Record summary

CVE-2025-66176 has a selected CVSS score of 8.8 (high).

Description

There is a Buffer overflow Vulnerability in the device Search and Discovery feature of Hikvision Access Control Products. If exploited, an attacker on the same local area network (LAN) could cause the device to malfunction by sending specially crafted packets to an unpatched device.

Description source: CVE List

Exploitation context

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Jan 13, 2026 · Source: CVE List

Affected products and versions

Showing 12 of 18
ProductSourceVersion rangeStatus
CVE ListVersions below V1.3.65affected
CVE ListVersions below V3.9.40affected
CVE ListVersions below V4.23.41affected
CVE ListVersions below V3.7.80affected
CVE ListVersions below V3.7.80affected
CVE ListVersions below V3.3.180affected

DS-K1T342/K1T343/K1T344/DS-K1T6QT-F72/F43

Browse Hikvision / DS-K1T342/K1T343/K1T344/DS-K1T6QT-F72/F43
CVE ListVersions below V4.48.0affected
CVE ListVersions below V4.48.0affected
CVE ListVersions below V3.7.80affected
CVE ListVersions below V3.7.80affected
CVE ListVersions below V3.7.80affected
CVE ListVersions below V1.4.21affected

References

3