Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Hanwha Vision Co., Ltd. — Vulnerabilities & Security Advisories 17

Browse all 17 CVE security advisories affecting Hanwha Vision Co., Ltd.. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Hanwha Vision Co., Ltd. specializes in video surveillance systems and security cameras for commercial and industrial applications. Historically, their products have been vulnerable to remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from improper input validation and weak authentication mechanisms. The company has faced scrutiny for multiple security incidents, including a 2021 vulnerability affecting over 100,000 devices that allowed unauthorized access to live feeds and recorded footage. Despite patches, the persistent presence of 17 CVEs indicates ongoing security challenges in their IoT ecosystem, particularly in web interfaces and firmware implementations.

CVE IDTitleCVSSSeverityPublished
CVE-2025-8075 Improper Input Validation — QNV-C8012CWE-20 6.1 -2025-12-26
CVE-2025-52601 Hardcoding sensitive information — Device ManagerCWE-321 4.3 -2025-12-26
CVE-2025-52600 Improper Input Validation — QNV-C8012CWE-20 9.3 -2025-12-26
CVE-2025-52599 Inadequate account permissions management — QNV-C8012CWE-269 8.1 -2025-12-26
CVE-2025-52598 Insufficient certificate validation — QNV-C8012CWE-295 9.8 -2025-12-26
CVE-2024-41882 Stack based buffer overflow — XRN-420SCWE-121 9.8 -2024-12-24
CVE-2024-41883 Null Pointer Dereference — XRN-420SCWE-476 9.8 -2024-12-24
CVE-2024-41884 Null Pointer Dereference — XRN-420SCWE-476 9.1 -2024-12-24
CVE-2024-41885 Hardcoding sensitive information — XRN-420SCWE-547 9.8 -2024-12-24
CVE-2024-41886 Improper Input Validation — XRN-420SCWE-755 7.2 -2024-12-24
CVE-2024-41887 Arbitrary File Overwrite — XRN-420SCWE-22 9.8 -2024-12-24
CVE-2023-5038 Unauthenticated DoS — A-Series, Q-Series, PNM-series CameraCWE-703 7.5AIHighAI2024-06-25
CVE-2023-6116 Remote Code Execution without authentication using stack overflow — XRN-420SCWE-121 8.9 High2024-04-26
CVE-2023-6096 using a inappropriate encryption logic — HRX-1620CWE-668 7.4 High2024-04-26
CVE-2023-6095 Remote Code Execution without authentication using memory overflow — HRX-1620CWE-121 8.9 High2024-04-26
CVE-2023-5747 Command injection via wave install file — PNV-A6081RCWE-347 7.2 High2023-11-13
CVE-2023-5037 Authenticated Command Injection — A-Series, Q-Series, PNM-series CameraCWE-78 8.8 -2023-11-13

This page lists every published CVE security advisory associated with Hanwha Vision Co., Ltd.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.