boxscore/security
CVE · referencelatest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CVE-2026-85544

Hikvision DS-KV9503 — Some Hikvision intercom products utilize an immutable factory value which should be obtained from local network or physical interaction w…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   P   L   N   N  U  H  H  N    6.1   .0041   33.1     —
AFFECTED
  Product    Versions                                Fixed
  DS-KV9503  V2.3.13 and the versions prior to it –  —
  DS-KV6113  V3.7.0 and the versions prior to it –   —
  DS-KV6103  V3.7.0 and the versions prior to it –   —
  DS-KV6133  V3.7.0 and the versions prior to it –   —
  DS-KV8113  V3.7.0 and the versions prior to it –   —
  DS-KV8213  V3.7.0 and the versions prior to it –   —
  DS-KV8413  V3.7.0 and the versions prior to it –   —
  DS-KD8003  V3.7.1 and the versions prior to it –   —
  DS-KD8005  V3.10.0 and the versions prior to it –  —
  DS-KV6114  V3.9.0 and the versions prior to it –   —
  + 3 more
TIMELINE
  Sep 4   Reserved by hikvision
  Sep 10  Published (CNA: hikvision)
  Sep 18  RESCORED — CVE-2026-85544 (Hikvision DS-KV9503). CVSS 5.2 → 6.1 (NVD).
CWE-798, CWE-1310 · CNA: hikvision · CVSS v3.1 · 1 reference · NVD status: Deferred

Description

Some Hikvision intercom products utilize an immutable factory value which should be obtained from local network or physical interaction with the device within their main card, which may allow attackers to forge a legitimate main card, thereby gaining the permission to issue cards.

Lifecycle

Complete event history — 3 events, chronological
DateEventDetail
September 4, 2026ReservedReserved by hikvision
September 10, 2026PublishedPublished (CNA: hikvision)
September 18, 2026RESCOREDRESCORED — CVE-2026-85544 (Hikvision DS-KV9503). CVSS 5.2 → 6.1 (NVD).

Affected

Affected products and packages — 13 rows
VendorProduct / PackageEcosystemVersion introducedFixed
HikvisionDS-KV9503—V2.3.13 and the versions prior to it—
HikvisionDS-KV6113—V3.7.0 and the versions prior to it—
HikvisionDS-KV6103—V3.7.0 and the versions prior to it—
HikvisionDS-KV6133—V3.7.0 and the versions prior to it—
HikvisionDS-KV8113—V3.7.0 and the versions prior to it—
HikvisionDS-KV8213—V3.7.0 and the versions prior to it—
HikvisionDS-KV8413—V3.7.0 and the versions prior to it—
HikvisionDS-KD8003—V3.7.1 and the versions prior to it—
HikvisionDS-KD8005—V3.10.0 and the versions prior to it—
HikvisionDS-KV6114—V3.9.0 and the versions prior to it—
HikvisionDS-KV6124—V3.9.0 and the versions prior to it—
HikvisionDS-KV6134—V3.9.0 and the versions prior to it—
HikvisionDS-KV8114—V3.11.0 and the versions prior to it—

Weaknesses

CWE-798 · CWE-1310

References (1)

Related

Authoritative record: CVE-2026-85544 at cve.org

Vendors: hikvision

Weaknesses: CWE-798 · CWE-1310

About this page

This is a reference page, not a dated page of record. It assembles the complete lifecycle of CVE-2026-85544 from the CVE Program record, NVD enrichment, the CISA KEV catalog, EPSS, and OSV advisories. The box score's numbers (CVSS, EPSS, KEV status) are current as of Sunday, October 4, 2026 UTC and are re-derived as the archive grows; only dated daily editions are immutable pages of record. The authoritative source for this identifier is cve.org.