← Browse

CVE-2026-16843

Medium

Elevated severity or exploit probability.

CVSS base
7.2 HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS — probability of exploitation (30 days)
0.9%
58.6th percentile
CISA KEV
Not listed
Weakness / dates
CWE-78
Published 2026-07-31 · modified 2026-08-28

Description

Some Hikvision Networking Products are vulnerable to authenticated command execution due to insufficient input validation. Attackers with valid credentials can exploit this flaw by sending crafted packets containing malicious commands to affected devices, leading to arbitrary command execution.

References

Official: NVD · CVE.org