Vulnerabilities > Hikvision > DS 7204Hghi F1 Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-01-14 CVE-2020-7057 Improper Restriction of Excessive Authentication Attempts vulnerability in Hikvision Ds-7204Hghi-F1 Firmware 4.0.1
Hikvision DVR DS-7204HGHI-F1 V4.0.1 build 180903 Web Version sends a different response for failed ISAPI/Security/sessionLogin/capabilities login attempts depending on whether the user account exists, which might make it easier to enumerate users.
network
low complexity
hikvision CWE-307
5.3