CVE-2025-52598: Insufficient certificate validation
Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has found a flaw that camera's client service does not perform certificate validation. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-52598?
CVE-2025-52598 has been assessed with a severity of high due to its potential impact on security.
How do I fix CVE-2025-52598?
To resolve CVE-2025-52598, update your HanwhaVision camera firmware to the latest version released by the manufacturer.
What types of devices are affected by CVE-2025-52598?
CVE-2025-52598 affects specific models of HanwhaVision cameras and firmware versions prior to 2.24.00.
What kind of vulnerability is described in CVE-2025-52598?
CVE-2025-52598 is a vulnerability that arises from the camera's client service failing to perform proper certificate validation.
Is there an exploit available for CVE-2025-52598?
There is no public information regarding the availability of an exploit for CVE-2025-52598, but it is crucial to apply the patch to mitigate risks.