« Volver al listado

CVE-2025-39240

Estado: AplazadaAlta (7.2)—

Some Hikvision Wireless Access Point are vulnerable to authenticated remote command execution due to insufficient input validation. Attackers with valid credentials can exploit this flaw by sending crafted packets containing malicious commands to affected devices, leading to arbitrary command execution.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

🎯 Técnicas ATT&CK

Cómo se explota esta vulnerabilidad y qué consigue el atacante, en el lenguaje de MITRE ATT&CK.

Acceso remoto con credenciales válidas (PR:H) sin interacción; CWE-78 implica ejecución de comandos arbitrarios en el dispositivo Hikvision.

Inferido por nuestro agente de análisis a partir de la descripción oficial, el vector CVSS y la CWE, y comprobado por un supervisor. Puede contener errores.

🛡️ Mitigaciones ATT&CK que cubren estas técnicas

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2025-39240",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2025-39240",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "total"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2025-06-13T15:15:35.438694Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "hsrc@hikvision.com",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 7.2,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "HIGH",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 1.2
      }
    ]
  },
  "affected": [
    {
      "source": "hsrc@hikvision.com",
      "affectedData": [
        {
          "vendor": "Hikvision",
          "product": "DS-3WAP622G-SI",
          "versions": [
            {
              "status": "affected",
              "version": "V1.1.5402 build241014(E2254P02)and the versions prior to it"
            }
          ]
        },
        {
          "vendor": "Hikvision",
          "product": "DS-3WAP623E-SI",
          "versions": [
            {
              "status": "affected",
              "version": "V1.1.5400 build240814(E2254)and the versions prior to it"
            }
          ]
        },
        {
          "vendor": "Hikvision",
          "product": "DS-3WAP521-SI",
          "versions": [
            {
              "status": "affected",
              "version": "V1.1.5400 build240814(E2254)and the versions prior to it"
            }
          ],
          "defaultStatus": "affected"
        },
        {
          "vendor": "Hikvision",
          "product": "DS-3WAP522-SI",
          "versions": [
            {
              "status": "affected",
              "version": "V1.1.5402 build241014(E2254P02)and the versions prior to it"
            }
          ]
        },
        {
          "vendor": "Hikvision",
          "product": "DS-3WAP621E-SI",
          "versions": [
            {
              "status": "affected",
              "version": "V1.1.5400 build240814(E2254)and the versions prior to it"
            }
          ]
        },
        {
          "vendor": "Hikvision",
          "product": "DS-3WAP622E-SI",
          "versions": [
            {
              "status": "affected",
              "version": "V1.1.5402 build241014(E2254P02)and the versions prior to it"
            }
          ]
        }
      ]
    }
  ],
  "published": "2025-06-13T08:15:19.377",
  "references": [
    {
      "url": "https://www.hikvision.com/en/support/cybersecurity/security-advisory/remote-command-execution-vulnerability-in-some-hikvision-wireless-access-point/",
      "source": "hsrc@hikvision.com"
    }
  ],
  "vulnStatus": "Deferred",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
      "description": [
        {
          "lang": "en",
          "value": "CWE-78"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Some Hikvision Wireless Access Point are vulnerable to authenticated remote command execution due to insufficient input validation. Attackers with valid credentials can exploit this flaw by sending crafted packets containing malicious commands to affected devices, leading to arbitrary command execution."
    },
    {
      "lang": "es",
      "value": "Some Hikvision Wireless Access Point son vulnerables a la ejecución remota de comandos autenticados debido a una validación de entrada insuficiente. Los atacantes con credenciales válidas pueden explotar esta vulnerabilidad enviando paquetes manipulados con comandos maliciosos a los dispositivos afectados, lo que provoca la ejecución arbitraria de comandos."
    }
  ],
  "lastModified": "2026-06-17T09:17:47.853",
  "sourceIdentifier": "hsrc@hikvision.com"
}