Back to search
CVE-2023-28813
Published: Nov 23, 2023
Modified: Aug 2, 2024
PUBLISHED
CVSS v3.1
8.1
HIGH
Description
An attacker could exploit a vulnerability by sending crafted messages to computers installed with this plug-in to modify plug-in parameters, which could cause affected computers to download malicious files.
| Vendor | Product | Versions |
|---|---|---|
Hikvision | LocalServiceComponents | affected version 1.0.0.78 and the versions prior to it |
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
High
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now