CVE-2023-53691: Hikvision Csmp Isecure Center

High severity, CVSS 8.3. EPSS: 1.3% chance of exploitation in the next 30 days.

Hikvision CSMP (Comprehensive Security Management Platform) iSecure Center through 2023-06-25 allows file upload via /center/api/files directory traversal, as exploited in the wild in 2024 and 2025.

Affected products

  • Hikvision Csmp Isecure Center: up to and including 2023-06-25

Published 2025-10-22. Last modified 2026-06-17.