CVE-2026-85544 PUBLISHED

Assigner: hikvision
Reserved: 04.09.2026 Published: 10.09.2026 Updated: 10.09.2026

There is an Improper Encryption Configuration Vulnerability in some Hikvision Intercom Products. This could allow attackers to forge M1 cards.

Metrics

CVSS Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
CVSS Score: 5.2

Product Status

Vendor Hikvision
Product DS-KV9503
Versions
  • Version V2.3.13 and the versions prior to it is affected
Vendor Hikvision
Product DS-KV6113
Versions
  • Version V3.7.0 and the versions prior to it is affected
Vendor Hikvision
Product DS-KV6103
Versions
  • Version V3.7.0 and the versions prior to it is affected
Vendor Hikvision
Product DS-KV6133
Versions
  • Version V3.7.0 and the versions prior to it is affected
Vendor Hikvision
Product DS-KV8113
Versions
  • Version V3.7.0 and the versions prior to it is affected
Vendor Hikvision
Product DS-KV8213
Versions
  • Version V3.7.0 and the versions prior to it is affected
Vendor Hikvision
Product DS-KV8413
Versions
  • Version V3.7.0 and the versions prior to it is affected
Vendor Hikvision
Product DS-KD8003
Versions
  • Version V3.7.1 and the versions prior to it is affected
Vendor Hikvision
Product DS-KD8005
Versions
  • Version V3.10.0 and the versions prior to it is affected
Vendor Hikvision
Product DS-KV6114
Versions
  • Version V3.9.0 and the versions prior to it is affected
Vendor Hikvision
Product DS-KV6124
Versions
  • Version V3.9.0 and the versions prior to it is affected
Vendor Hikvision
Product DS-KV6134
Versions
  • Version V3.9.0 and the versions prior to it is affected
Vendor Hikvision
Product DS-KV8114
Versions
  • Version V3.11.0 and the versions prior to it is affected

Credits

  • Filipe Moreira finder

References