CVE-2026-57600
Received Received - Intake

Information Disclosure in Hikvision Camera Firmware

Vulnerability report for CVE-2026-57600, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-22

Last updated on: 2026-07-22

Assigner: Hangzhou Hikvision Digital Technology Co., Ltd.

Description

Insufficient validation of input parameters in the firmware of some Hikvision cameras allows unauthenticated attackers to retrieve partial sensitive data.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-22
Last Modified
2026-07-22
Generated
2026-07-22
AI Q&A
2026-07-22
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
hikvision firmware *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-20 The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability involves insufficient validation of input parameters in the firmware of certain Hikvision cameras. It allows unauthenticated attackers to retrieve partial sensitive data without needing to authenticate or interact with the system.

Impact Analysis

An attacker could exploit this to access partial sensitive data from affected Hikvision cameras. This may include sensitive information stored or transmitted by the device, potentially leading to privacy breaches or further exploitation.

Compliance Impact

This vulnerability could lead to unauthorized access to sensitive data, which may violate GDPR or HIPAA requirements for data protection and confidentiality. Organizations using affected cameras may face compliance violations and potential penalties.

Mitigation Strategies

Update the firmware of all Hikvision cameras to the latest version to ensure proper input validation is implemented.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-57600. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart