CVE-2026-0709: Input Validation
Some Hikvision Wireless Access Points are vulnerable to authenticated command execution due to insufficient input validation. Attackers with valid credentials can exploit this flaw by sending crafted packets containing malicious commands to affected devices, leading to arbitrary command execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0709?
CVE-2026-0709 is considered a high severity vulnerability due to the potential for authenticated command execution.
How do I fix CVE-2026-0709?
To fix CVE-2026-0709, update your Hikvision Wireless Access Points to the latest firmware version provided by Hikvision.
Who is affected by CVE-2026-0709?
CVE-2026-0709 affects Hikvision Wireless Access Points that are vulnerable to authenticated command execution.
What is the impact of CVE-2026-0709?
The impact of CVE-2026-0709 includes the potential for attackers with valid credentials to execute arbitrary commands on affected devices.
Is CVE-2026-0709 exploitable remotely?
CVE-2026-0709 is exploitable by authenticated attackers who can send malicious commands to the affected Hikvision devices.