5.3
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Description
There is an Unquoted Service Path Vulnerability in some HikCentral FocSign versions. This could allow an authenticated user to potentially enable escalation of privilege via local access.
Basic Information
ID
CVE-2025-39246
Source
hikvision
Published
Aug 29, 2025 at 01:39
Affected Product
Vendor
Hikvision
Product
HikCentral FocSign
Version
Versions between V1.4.0 and V2.2.0
Affected Versions
Hikvision HikCentral FocSign Versions between V1.4.0 and V2.2.0