7.2
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Description
Due to insufficient input parameter validation on the interface, authenticated users of certain HIKSEMI NAS products can execute arbitrary commands on the device by crafting specific messages.
Basic Information
ID
CVE-2026-22623
Source
hikvision
Published
Jan 30, 2026 at 11:02
Affected Product
Vendor
HIKSEMI
Product
HS-AFS-S1H1
Version
V5.10.10_Build_251126
Affected Versions
HIKSEMI HS-AFS-S1H1 V5.10.10_Build_251126