CVE-2025-66176
EUVD-2026-238213.01.2026, 03:16
There is a Stack overflow Vulnerability in the device Search and Discovery feature of Hikvision Access Control Products. If exploited, an attacker on the same local area network (LAN) could cause the device to malfunction by sending specially crafted packets to an unpatched device.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hikvision | ds-k1t331_firmware | 𝑥 < 3.7.80 |
| hikvision | ds-k1t341a_firmware | 𝑥 < 3.7.80 |
| hikvision | ds-k1t341b_firmware | 𝑥 < 3.7.80 |
| hikvision | ds-k1t671_firmware | 𝑥 < 3.7.80 |
| hikvision | ds-k5671_firmware | 𝑥 < 3.7.80 |
| hikvision | ds-k1t672_firmware | 𝑥 < 3.7.80 |
| hikvision | ds-k1t680_firmware | 𝑥 < 3.7.80 |
| hikvision | ds-k1t981_firmware | 𝑥 < 3.7.80 |
| hikvision | ds-k1t341c_firmware | 𝑥 < 3.3.180 |
| hikvision | ds-k1t670_firmware | 𝑥 < 4.48.0 |
| hikvision | ds-k1t673_firmware | 𝑥 < 4.48.0 |
| hikvision | ds-k1t8003_firmware | 𝑥 ≤ 1.4.21 |
| hikvision | ds-k1t804a_firmware | 𝑥 < 1.4.22 |
| hikvision | ds-k1t804b_firmware | 𝑥 < 1.4.23 |
| hikvision | ds-k1t201a_firmware | 𝑥 < 1.3.65 |
| hikvision | ds-k1t105a_firmware | 𝑥 < 1.3.65 |
| hikvision | ds-k1t342_firmware | 𝑥 < 4.48.0 |
| hikvision | ds-k1t343_firmware | 𝑥 < 4.48.0 |
| hikvision | ds-k1t344_firmware | 𝑥 < 4.48.0 |
| hikvision | ds-k1t6qt-f72_firmware | 𝑥 < 4.48.0 |
| hikvision | ds-k1t6qt-f43_firmware | 𝑥 < 4.48.0 |
| hikvision | ds-k1t8005_firmware | 𝑥 < 3.25.40 |
| hikvision | ds-k1t808_firmware | 𝑥 < 3.25.40 |
| hikvision | ds-k1t320_firmware | 𝑥 < 3.9.40 |
| hikvision | ds-k1t321_firmware | 𝑥 < 3.9.40 |
| hikvision | ds-k1t323_firmware | 𝑥 < 4.23.41 |
| hikvision | ds-k1t510_firmware | 𝑥 < 4.23.41 |
| hikvision | ds-k5033_firmware | 𝑥 < 4.37.40 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration