nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2024-29947 CVE-2024-29947
LOW
Record summary
CVE-2024-29947 has a selected CVSS score of 2.7 (low).
Description
There is a NULL dereference pointer vulnerability in some Hikvision NVRs. Due to an insufficient validation of a parameter in a message, an attacker may send specially crafted messages to an affected product, causing a process abnormality.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 10, 2024 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
DS-7604NI-K1 / 4P(B)Browse Hikvision / DS-7604NI-K1 / 4P(B) | CVE List | V4.30.096build221220 and the versions prior to it | affected |
References
2hikvision.com
https://www.hikvision.com/en/support/cybersecurity/security-advisory/security-vulnerabilities-in-hikvision-nvr-devices