Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 23 Oct 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hikvision
Hikvision isecure Center |
|
| Vendors & Products |
Hikvision
Hikvision isecure Center |
Wed, 22 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 22 Oct 2025 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Hikvision CSMP (Comprehensive Security Management Platform) iSecure Center through 2024-08-01 allows execution of a command within $( ) in /center/api/installation/detection JSON data, as exploited in the wild in 2024 and 2025. | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-10-22T13:55:16.083Z
Reserved: 2025-10-22T00:00:00.000Z
Link: CVE-2024-58274
Updated: 2025-10-22T13:55:06.602Z
Status : Deferred
Published: 2025-10-22T04:15:55.680
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-58274
No data.
OpenCVE Enrichment
Updated: 2025-10-23T13:11:57Z