S4E just found a high-severity finding from cve-2025-58360 scanner
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Oct 8, 2024

CVE-2023-6895 Scanner

CVE-2023-6895 Scanner - OS Command Injection vulnerability in Hikvision Intercom Broadcast System

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.9k
Times Used
continuous scan runs
5.8k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2023-6895
9.8
CVSSmedium
Exploitable from an adjacent network · no authentication required.

A vulnerability was found in Hikvision Intercom Broadcasting System 3.0.3_20201113_RELEASE(HIK). It has been declared as critical. This vulnerability affects unknown code of the file /php/ping.php. The manipulation of the argument jsondata[ip] with the input netstat -ano leads to os command injection. The exploit has been disclosed to the public and may be used. Upgrading to version 4.1.0 is able to address this issue. It is recommended to upgrade the affected component. VDB-248254 is the identifier assigned to this vulnerability.

Attack Vector
Adjacent
Privileges Req.
None
User Interaction
None
Affected
Intercom Broadcasting Systemby Hikvision
3.0.3_20201113_RELEASE(HIK)
Updated Aug 22, 2026View on NVD →
Detail

The Hikvision Intercom Broadcasting System is utilized widely in commercial and residential properties to facilitate secure and easy communication. Developed by Hikvision, a global leader in video surveillance technology, this system is often deployed in building complexes to manage secure access and communication networks. The product is designed to enhance security by acting as an integrated communication system. Its broad application ensures flexible accommodation across different scales, from small residential buildings to large corporate environments. With its reliable design and functionality, the system contributes to extended surveillance capabilities and efficient visitor management. Overall, its versatility and functionality make it a prominent choice for implementing robust communication and security in various settings.

This specific vulnerability impacts the Hikvision Intercom Broadcasting System's version 3.0.3_20201113_RELEASE(HIK), presenting a significant threat due to OS command injection. Attackers can exploit the vulnerability by manipulating the 'jsondata[ip]' argument within the '/php/ping.php' file. OS command injection allows malicious users to execute arbitrary commands on the host operating system, leading to unauthorized control or access. The risk is exacerbated by the vulnerability's ease of exploitation and the critical nature of the affected system. If exploited, attackers can leverage this vulnerability to perform various malicious activities, potentially compromising the entire communication system. It's crucial for system administrators to understand the severity and the possible implications of this vulnerability.

Technical details of the OS command injection vulnerability have identified the '/php/ping.php' file as the entry point. The manipulation of the 'jsondata[ip]' parameter using specific commands such as 'netstat -ano' facilitates the exploit. By sending malicious payloads through this parameter, attackers can inject arbitrary OS commands into the system. The vulnerability lies in the improper handling and sanitization of user inputs, allowing unauthorized execution of commands. Given the critical nature of the system, hacking attempts utilizing this vector can lead to significant disruptions. Security professionals need to prioritize patching and safeguarding against this vulnerability to prevent potential exploitation.

When exploited, this vulnerability can have severe impacts, including unauthorized command execution and system compromise. Attackers could gain elevated permissions, enabling unauthorized access to sensitive information within the system. Such actions could lead to data breaches, unauthorized monitoring, or disruptions in intercom communications. Furthermore, malicious actors might deploy further attacks like privilege escalation or lateral movement within the network. The security integrity of organizations relying on this system could be severely affected, leading to substantial operational and reputational damage. It is essential to address this vulnerability promptly to mitigate its potential adverse effects.

REFERENCES

Solution Advice
  • Upgrade to Hikvision Intercom Broadcasting System version 4.1.0 or higher, as this contains patches for the identified exploit.
  • Implement rigorous input validation and sanitization in the software to prevent unauthorized command injection.
  • Regularly audit and monitor system logs to detect and respond to any suspicious activities promptly.
  • Employ network segmentation to isolate critical systems and limit lateral movement following a potential breach.
  • Conduct regular vulnerability assessments and penetration testing to identify possible security weaknesses.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.