Hirschmann Industrial HiVision versions prior to 06.0.07 and 07.0.03 contains an authentication bypass vulnerability in the master service that allows unauthenticated remote attackers to execute arbitrary commands with administrative privileges. Attackers can invoke exposed interface methods over the remote service to bypass authentication and achieve remote code execution on the underlying operating system.
References
Configurations
No configuration.
History
03 Apr 2026, 21:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-03 21:17
Updated : 2026-06-17 01:15
NVD link : CVE-2017-20237
Mitre link : CVE-2017-20237
CVE.ORG link : CVE-2017-20237
JSON object : View
Products Affected
No product.
CWE
CWE-287
Improper Authentication
