An Improper Authentication issue was discovered in Hikvision DS-2CD2xx2F-I Series V5.2.0 build 140721 to V5.4.0 build 160530, DS-2CD2xx0F-I Series V5.2.0 build 140721 to V5.4.0 Build 160401, DS-2CD2xx2FWD Series V5.3.1 build 150410 to V5.4.4 Build 161125, DS-2CD4x2xFWD Series V5.2.0 build 140721 to V5.4.0 Build 160414, DS-2CD4xx5 Series V5.2.0 build 140721 to V5.4.0 Build 160421, DS-2DFx Series V5.2.0 build 140805 to V5.4.5 Build 160928, and DS-2CD63xx Series V5.0.9 build 140305 to V5.3.5 Build 160106 devices. The improper authentication vulnerability occurs when an application does not adequately or correctly authenticate users. This may allow a malicious user to escalate his or her privileges on the system and gain access to sensitive information.
History

Thu, 05 Mar 2026 20:15:00 +0000

Type Values Removed Values Added
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 05 Mar 2026 19:45:00 +0000

Type Values Removed Values Added
Metrics kev

{'dateAdded': '2026-03-05T00:00:00+00:00', 'dueDate': '2026-03-26T00:00:00+00:00'}


Fri, 27 Dec 2024 21:45:00 +0000


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2017-05-06T00:00:00.000Z

Updated: 2026-03-05T19:13:45.528Z

Reserved: 2017-04-18T00:00:00.000Z

Link: CVE-2017-7921

cve-icon Vulnrichment

Updated: 2024-12-27T20:39:36.735Z

cve-icon NVD

Status : Deferred

Published: 2017-05-06T00:29:00.350

Modified: 2026-03-05T20:16:08.180

Link: CVE-2017-7921

cve-icon Redhat

No data.