There is an XSS vulnerability in some HikCentral Master Lite versions. If exploited, an attacker could inject scripts into certain pages by building malicious data.
References
Configurations
History
22 Oct 2024, 16:11
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.hikvision.com/en/support/cybersecurity/security-advisory/security-vulnerabilities-in-hikcentral-product-series/ - Vendor Advisory | |
| CPE | cpe:2.3:a:hikvision:hikcentral_master:*:*:*:*:lite:*:*:* | |
| First Time |
Hikvision
Hikvision hikcentral Master |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
| CWE | CWE-79 |
18 Oct 2024, 09:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-10-18 09:15
Updated : 2024-10-29 15:35
NVD link : CVE-2024-47486
Mitre link : CVE-2024-47486
JSON object : View
Products Affected
hikvision
- hikcentral_master
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
