Security Advisory

CVE-2022-28172

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-06-27 17:50:40
Last updated 2024-09-17 01:10:46
Assigner hikvision
State PUBLISHED

Description

The web module in some Hikvision Hybrid SAN/Cluster Storage products have the following security vulnerability. Due to the insufficient input validation, attacker can exploit the vulnerability to XSS attack by sending messages with malicious commands to the affected device.