Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CVE-2026-85544
Hikvision DS-KV9503 — Some Hikvision intercom products utilize an immutable factory value which should be obtained from local network or physical interaction w…
AV AC PR UI S C I A CVSS EPSS %ile KEV
P L N N U H H N 6.1 .0041 33.1 —
AFFECTED
Product Versions Fixed
DS-KV9503 V2.3.13 and the versions prior to it – —
DS-KV6113 V3.7.0 and the versions prior to it – —
DS-KV6103 V3.7.0 and the versions prior to it – —
DS-KV6133 V3.7.0 and the versions prior to it – —
DS-KV8113 V3.7.0 and the versions prior to it – —
DS-KV8213 V3.7.0 and the versions prior to it – —
DS-KV8413 V3.7.0 and the versions prior to it – —
DS-KD8003 V3.7.1 and the versions prior to it – —
DS-KD8005 V3.10.0 and the versions prior to it – —
DS-KV6114 V3.9.0 and the versions prior to it – —
+ 3 more
TIMELINE
Sep 4 Reserved by hikvision
Sep 10 Published (CNA: hikvision)
Sep 18 RESCORED — CVE-2026-85544 (Hikvision DS-KV9503). CVSS 5.2 → 6.1 (NVD).
Description
Some Hikvision intercom products utilize an immutable factory value which should be obtained from local network or physical interaction with the device within their main card, which may allow attackers to forge a legitimate main card, thereby gaining the permission to issue cards.
Lifecycle
Complete event history — 3 events, chronological
| Date | Event | Detail |
| September 4, 2026 | Reserved | Reserved by hikvision |
| September 10, 2026 | Published | Published (CNA: hikvision) |
| September 18, 2026 | RESCORED | RESCORED — CVE-2026-85544 (Hikvision DS-KV9503). CVSS 5.2 → 6.1 (NVD). |
Affected
Affected products and packages — 13 rows
| Vendor | Product / Package | Ecosystem | Version introduced | Fixed |
| Hikvision | DS-KV9503 | — | V2.3.13 and the versions prior to it | — |
| Hikvision | DS-KV6113 | — | V3.7.0 and the versions prior to it | — |
| Hikvision | DS-KV6103 | — | V3.7.0 and the versions prior to it | — |
| Hikvision | DS-KV6133 | — | V3.7.0 and the versions prior to it | — |
| Hikvision | DS-KV8113 | — | V3.7.0 and the versions prior to it | — |
| Hikvision | DS-KV8213 | — | V3.7.0 and the versions prior to it | — |
| Hikvision | DS-KV8413 | — | V3.7.0 and the versions prior to it | — |
| Hikvision | DS-KD8003 | — | V3.7.1 and the versions prior to it | — |
| Hikvision | DS-KD8005 | — | V3.10.0 and the versions prior to it | — |
| Hikvision | DS-KV6114 | — | V3.9.0 and the versions prior to it | — |
| Hikvision | DS-KV6124 | — | V3.9.0 and the versions prior to it | — |
| Hikvision | DS-KV6134 | — | V3.9.0 and the versions prior to it | — |
| Hikvision | DS-KV8114 | — | V3.11.0 and the versions prior to it | — |
About this page
This is a reference page, not a dated page of record. It assembles the complete lifecycle of CVE-2026-85544 from the CVE Program record, NVD enrichment, the CISA KEV catalog, EPSS, and OSV advisories. The box score's numbers (CVSS, EPSS, KEV status) are current as of Sunday, October 4, 2026 UTC and are re-derived as the archive grows; only dated daily editions are immutable pages of record. The authoritative source for this identifier is cve.org.