Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 18 Sep 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-798 |
Fri, 18 Sep 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Some Hikvision intercom products utilize an immutable factory value which should be obtained from local network or physical interaction with the device within their main card, which may allow attackers to forge a legitimate main card, thereby gaining the permission to issue cards. The issue is resolved by removing the main card function in the listed fixed versions. | Some Hikvision intercom products utilize an immutable factory value which should be obtained from local network or physical interaction with the device within their main card, which may allow attackers to forge a legitimate main card, thereby gaining the permission to issue cards. |
| Metrics |
cvssV3_1
|
cvssV3_1
|
Fri, 18 Sep 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | There is an Improper Encryption Configuration Vulnerability in some Hikvision Intercom Products. This could allow attackers to forge M1 cards. | Some Hikvision intercom products utilize an immutable factory value which should be obtained from local network or physical interaction with the device within their main card, which may allow attackers to forge a legitimate main card, thereby gaining the permission to issue cards. The issue is resolved by removing the main card function in the listed fixed versions. |
Sun, 13 Sep 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hikvision
Hikvision ds-kd8003 Hikvision ds-kd8005 Hikvision ds-kv6103 Hikvision ds-kv6113 Hikvision ds-kv6114 Hikvision ds-kv6124 Hikvision ds-kv6133 Hikvision ds-kv6134 Hikvision ds-kv8113 Hikvision ds-kv8114 Hikvision ds-kv8213 Hikvision ds-kv8413 Hikvision ds-kv9503 |
|
| Vendors & Products |
Hikvision
Hikvision ds-kd8003 Hikvision ds-kd8005 Hikvision ds-kv6103 Hikvision ds-kv6113 Hikvision ds-kv6114 Hikvision ds-kv6124 Hikvision ds-kv6133 Hikvision ds-kv6134 Hikvision ds-kv8113 Hikvision ds-kv8114 Hikvision ds-kv8213 Hikvision ds-kv8413 Hikvision ds-kv9503 |
Thu, 10 Sep 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Encryption Configuration Enables M1 Card Forgery in Hikvision Intercoms |
Thu, 10 Sep 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Encryption Configuration Enables M1 Card Forgery in Hikvision Intercoms | |
| Weaknesses | CWE-310 |
Thu, 10 Sep 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Encryption Configuration Allows Forging M1 Cards in Hikvision Intercom Devices |
Thu, 10 Sep 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-1310 | |
| Metrics |
ssvc
|
Thu, 10 Sep 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Encryption Configuration Allows Forging M1 Cards in Hikvision Intercom Devices | |
| Weaknesses | CWE-310 |
Thu, 10 Sep 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | There is an Improper Encryption Configuration Vulnerability in some Hikvision Intercom Products. This could allow attackers to forge M1 cards. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hikvision
Published:
Updated: 2026-09-18T09:39:16.889Z
Reserved: 2026-09-04T09:24:07.712Z
Link: CVE-2026-85544
Updated: 2026-09-10T14:52:18.492Z
Status : Deferred
Published: 2026-09-10T13:20:32.433
Modified: 2026-09-18T10:17:06.593
Link: CVE-2026-85544
No data.
OpenCVE Enrichment
Updated: 2026-09-13T20:00:56Z