Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Hikvision DVR DS-7204HGHI-F1 V4.0.1 build 180903 Web Version sends a different response for failed ISAPI/Security/sessionLogin/capabilities login attempts depending on whether the user account exists, which might make it easier to enumerate users. However, only about 4 or 5 failed logins are allowed.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Hikvision DVR DS-7204HGHI-F1 安全漏洞
Vulnerability Description
Hikvision DVR DS-7204HGHI-F1是中国海康威视(Hikvision)公司的一个硬盘录像机。 Hikvision DVR DS-7204HGHI-F1(Web)V4.0.1 build 180903版本存在安全漏洞,该漏洞源于程序会根据用户账户的有效性来对失败的ISAPI/Security/sessionLogin/capabilities登录请求发送不同的响应。攻击者可利用该漏洞枚举用户。
CVSS Information
N/A
Vulnerability Type
N/A