CVE-2025-45851: High severity Hikvision DS-2CD1321-I vulnerability
Published Jun 27, 2025
·Updated
An issue in Hikvision DS-2CD1321-I V5.7.21 build 230819 allows attackers to cause a Denial of Service (DoS) via sending a crafted POST request to the endpoint /ISAPI/Security/challenge. The vendor has stated that upgrading to V5.7.23SP2 fixes the issue.
Affected Software
1 affected component
Hikvision DS-2CD1321-I<V5.7.23_SP2
Event History
Jun 27, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·12:15 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2025-45851?
CVE-2025-45851 has been classified as a Denial of Service vulnerability.
2
How do I fix CVE-2025-45851?
To mitigate CVE-2025-45851, update your Hikvision DS-2CD1321-I camera to the latest firmware version provided by Hikvision.
3
What type of attack does CVE-2025-45851 allow?
CVE-2025-45851 allows attackers to cause a Denial of Service (DoS) on the affected device.
4
Which device is affected by CVE-2025-45851?
CVE-2025-45851 specifically affects the Hikvision DS-2CD1321-I camera model.
5
What is the exploit method for CVE-2025-45851?
CVE-2025-45851 can be exploited by sending a crafted POST request to the /ISAPI/Security/challenge endpoint.