This content is restricted.
Brief
Here is a summary of the provided document:
Summary
A critical security vulnerability has been identified in certain Hikvision Access Control and Intercom Products, affecting multiple device models. The vulnerability allows for session fixation and improper access control, potentially enabling an attacker to hijack sessions, gain device operation permissions, or modify device network configuration. CVSS v3 base scores are 7.5 and 4.3 for the respective vulnerabilities. Hikvision has released patches to mitigate the issue, and CISA recommends users take defensive measures, including minimizing network exposure, using secure remote access methods, and implementing recommended cybersecurity strategies. No known public exploitation has been reported at this time.
Highlights content goes here...
This content is restricted.
