Home

Description

An issue in Hikvision DS-2CD1321-I V5.7.21 build 230819 allows attackers to cause a Denial of Service (DoS) via sending a crafted POST request to the endpoint /ISAPI/Security/challenge. The vendor has stated that upgrading to V5.7.23_SP2 fixes the issue.

PUBLISHED Reserved 2025-04-22 | Published 2025-06-27 | Updated 2025-06-30 | Assigner mitre

References

crashpark.weebly.com/...nauthenticated-denial-of-service-dos

assets.hikvision.com/...mera-V5.7.23_SP2_Release_Note-E8.pdf

www.hikvision.com/en/support/download/firmware/

cve.org (CVE-2025-45851)

nvd.nist.gov (CVE-2025-45851)

Download JSON