Loading
Some Hikvision Hybrid SAN/Cluster Storage products have an access control vulnerability which can be used to obtain the admin permission. The attacker can exploit the vulnerability by sending crafted messages to the affected devices.
Use CWE-284, Hikvision vendor hub and Ds-A71024 Firmware product page to widen CVE-2023-28808 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-28171 and CVE-2022-28172 for nearby disclosures in the same product family.