Home

Description

There is an Access Control Vulnerability in some HikCentral Professional versions. This could allow an unauthenticated user to obtain the admin permission.

PUBLISHED Reserved 2026-02-02 | Published 2026-05-09 | Updated 2026-05-09 | Assigner hikvision




MEDIUM: 6.8CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N

Product status

V2.4.0~V3.0.1
affected

Credits

Ayoub ELMOKHTAR from the Offensive Security Team (Noon) finder

References

www.hikvision.com/...lnerability-in-hikcentral-professional/

cve.org (CVE-2026-1749)

nvd.nist.gov (CVE-2026-1749)

Download JSON