CVE-2025-52599: Inadequate account permissions management
Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has discovered Inadequate of permission management for camera guest account. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-52599?
The severity of CVE-2025-52599 is considered high due to the inadequate permission management for camera guest accounts.
How do I fix CVE-2025-52599?
To fix CVE-2025-52599, update the affected HanwhaVision firmware to the latest version released by the manufacturer.
Which products are affected by CVE-2025-52599?
CVE-2025-52599 affects multiple HanwhaVision camera models, especially those with firmware versions prior to 2.23.01.
What kind of vulnerability is CVE-2025-52599?
CVE-2025-52599 is an inadequate permission management vulnerability that can allow unauthorized access to camera functions.
Is there a patch available for CVE-2025-52599?
Yes, the manufacturer has released patch firmware to address CVE-2025-52599.