Hanwhavision Xnp-6320H Firmware vulnerabilities
6 known vulnerabilities affecting hanwhavision/xnp-6320h_firmware.
Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM6
Vulnerabilities
Page 1 of 1
CVE-2025-52598MEDIUMCVSS 6.3fixed in 2.23.012025-12-26
CVE-2025-52598 [MEDIUM] CWE-295 CVE-2025-52598: Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Sys
Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has found a flaw that camera's client service does not perform certificate validation. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.
nvd
CVE-2025-52600MEDIUMCVSS 5.2fixed in 2.23.012025-12-26
CVE-2025-52600 [MEDIUM] CWE-20 CVE-2025-52600: Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Sys
Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has discovered a vulnerability in camera video analytics that Improper input validation. This vulnerability could allow an attacker to execute specific commands on the user's host PC.The manufacturer has released patch f
nvd
CVE-2025-52601MEDIUMCVSS 6.3fixed in 2.23.012025-12-26
CVE-2025-52601 [MEDIUM] CWE-321 CVE-2025-52601: Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Sys
Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has discovered a vulnerability in Device Manager that a hardcoded encryption key for sensitive information. An attacker can use key to decrypt sensitive information. The manufacturer has released patch firmware for the
nvd
CVE-2025-8075MEDIUMCVSS 5.8fixed in 2.23.012025-12-26
CVE-2025-8075 [MEDIUM] CWE-20 CVE-2025-8075: Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Sys
Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has discovered that validation of incoming XML format request messages is inadequate. This vulnerability could allow an attacker to XSS on the user's browser. The manufacturer has released patch firmware for the flaw, plea
nvd
CVE-2025-52599MEDIUMCVSS 6.3fixed in 2.23.012025-12-26
CVE-2025-52599 [MEDIUM] CWE-269 CVE-2025-52599: Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Sys
Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has discovered Inadequate of permission management for camera guest account. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.
nvd
CVE-2023-31994MEDIUMCVSS 5.3fixed in 2.22.002023-05-23
CVE-2023-31994 [MEDIUM] CVE-2023-31994: Certain Hanwha products are vulnerable to Denial of Service (DoS). ck vector is: When an empty UDP p
Certain Hanwha products are vulnerable to Denial of Service (DoS). ck vector is: When an empty UDP packet is sent to the listening service, the service thread results in a non-functional service (DoS) via WS Discovery and Hanwha proprietary discovery services. This affects IP Camera ANE-L7012R 1.41.01 and IP Camera XNV-9082R 2.10.02.
nvd