CVE-2024-29948: Low severity Hikvision Hikvision NVR vulnerability
There is an out-of-bounds read vulnerability in some Hikvision NVRs. An authenticated attacker could exploit this vulnerability by sending specially crafted messages to a vulnerable device, causing a service abnormality.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-29948?
CVE-2024-29948 is classified as a medium severity vulnerability due to its potential impact on device stability.
How do I fix CVE-2024-29948?
To fix CVE-2024-29948, update the firmware of your Hikvision NVR to the latest version provided by Hikvision.
Who is affected by CVE-2024-29948?
CVE-2024-29948 affects certain Hikvision NVR models that are vulnerable to out-of-bounds read exploits.
What could an attacker achieve by exploiting CVE-2024-29948?
An attacker exploiting CVE-2024-29948 could cause a service abnormality on the affected Hikvision NVR device.
Is user authentication required to exploit CVE-2024-29948?
Yes, an authenticated attacker is required to exploit CVE-2024-29948 by sending specially crafted messages to the device.