CVE-2026-32684 PUBLISHED

Assigner: hikvision
Reserved: 13.03.2026 Published: 12.05.2026 Updated: 12.05.2026

The application does not impose strict enough restrictions on directory access permissions, posing a risk that other malicious applications could obtain sensitive information.

Metrics

CVSS Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS Score: 2.9

Product Status

Vendor Hikvision
Product Hik-Connect APP
Versions
  • Version V6.10.x is affected
  • Version V6.12.0 is unaffected

Credits

  • Yiğithan Yücedağ finder

References