CVE-2026-16843EPSS p58.9%
CVE-2026-16843CVE-2026-16843
Description
Some Hikvision Networking Products are vulnerable to authenticated command execution due to insufficient input validation. Attackers with valid credentials can exploit this flaw by sending crafted packets containing malicious commands to affected devices, leading to arbitrary command execution.
Scoring
| CVSS | 7.2 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.92% probability of exploitation · percentile 58.9% · 2026-10-05T12:00:23Z |
| Last modified | 2026-08-28 |