First published: Thu Nov 23 2023(Updated: )
An attacker could exploit a vulnerability by sending crafted messages to computers installed with this plug-in to modify plug-in parameters, which could cause affected computers to download malicious files.
Credit: hsrc@hikvision.com
Affected Software | Affected Version | How to fix |
---|---|---|
LocalServiceComponents | <=1.0.0.78 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-28813 is a vulnerability that allows an attacker to modify plug-in parameters in computers installed with Hikvision Localservicecomponents, potentially leading to the download of malicious files.
An attacker can exploit CVE-2023-28813 by sending crafted messages to computers with the Hikvision Localservicecomponents plug-in.
CVE-2023-28813 has a severity rating of 8.1 (high).
The Hikvision Localservicecomponents plug-in version 1.0.0.78 is affected by CVE-2023-28813.
To mitigate CVE-2023-28813, it is recommended to update the Hikvision Localservicecomponents plug-in to the latest version provided by the vendor.