August 1, 2026

CVE Watchtower


← Back to CVE List

CVE-2021-36260NVD

Vulnerability Summary

A command injection vulnerability in the web server of some Hikvision product. Due to the insufficient input validation, attacker can exploit the vulnerability to launch a command injection attack by sending some messages with malicious commands.
Severity Level
UNKNOWN
Published Date
Sep 22, 2021
Last Modified
Oct 21, 2025
Exploitation Status
ACTIVE
EPSS Score (30-Day)
Data Pending
Root Weakness (CWE)
N/A