Loading
The web module in some Hikvision Hybrid SAN/Cluster Storage products have the following security vulnerability. Due to the insufficient input validation, attacker can exploit the vulnerability to XSS attack by sending messages with malicious commands to the affected device.
Use CWE-79, Hikvision vendor hub and Ds-A71024 Firmware product page to widen CVE-2022-28172 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-28808 and CVE-2022-28171 for nearby disclosures in the same product family.