CVE-2026-85544: Hikvision Ds-KD8003

Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.

Some Hikvision intercom products utilize an immutable factory value which should be obtained from local network or physical interaction with the device within their main card, which may allow attackers to forge a legitimate main card, thereby gaining the permission to issue cards.

Affected products

Published 2026-09-10. Last modified 2026-09-18.