CVE ID: CVE-2023-33806 Vulnerability Title: Arbitrary Code Execution on the Hikvision Interactive Tablet DS-D5B86RB/B Description: Insecure default configurations in Hikvision Interactive Tablet DS-D5B86RB/B Device Firmware version: V2.3.0 build220119 allow arbitrary code execution via command injection. Vulnerability Type: Command Injection Vendor of Product: Hikvision Affected Product Code Base: Hikvision Interactive Tablet DS-D5B86RB/B - Device Firmware version: V2.3.0 build220119 Affected Component: Hikvision Interactive Tablet DS-D5B86RB/B Attack Type: Physical/Remote Impact Code execution: True Attack Vectors: The steps to reproduce involve physical interaction with the device, navigating through its settings, and exploiting the command injection vulnerability. Steps to Reproduce: - Open the device settings on the Hikvision Interactive Tablet TV. - Navigate to the About section. - Tap multiple times on the "Device Firmware Version" to open the Factory Options Menu. - Scroll down the factory menu and click on the 'Execute Shell' option. - Create the directory and add a reverse shell/command inside the file. - Try the "Execute Shell" option again to get a reverse shell. Has vendor confirmed or acknowledged the vulnerability?: True Discoverer: Safvan Parakkal from Moro Hub Reference: http://hikvision.com