SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-85545

HIGH · CVSS 7.1 EPSS 0.17%

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

Certain versions of HikCentral Access Control are vulnerable, allowing authenticated low-privilege users to access API interfaces beyond their authorized roles. This can lead to unauthorized data exposure and manipulation, posing a significant security risk. Organizations using affected HikCentral products should prioritize remediation to mitigate potential exploitation.

CVE
CVE-2026-85545
Severity
HIGH
CVSS
7.1
EPSS
0.17%

Original NVD Description

There is an Vulnerability in some HikCentral Access Control versions. Authenticated low-privilege users can invoke API interfaces that their role is not authorized to access.