CVE-2024-25063: Hikvision Hikcentral Professional

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

Due to insufficient server-side validation, a successful exploit of this vulnerability could allow an attacker to gain access to certain URLs that the attacker should not have access to.

Affected products

  • Hikvision Hikcentral Professional: up to and including 2.5.1

Published 2024-03-02. Last modified 2026-06-17.