Authentication Bypass Vulnerability in Hirschmann Industrial HiVision Products
CVE-2017-20237

9.3CRITICAL

Key Information:

Vendor

Belden

Vendor
CVE Published:
3 April 2026

What is CVE-2017-20237?

The Hirschmann Industrial HiVision products prior to versions 06.0.07 and 07.0.03 are susceptible to an authentication bypass vulnerability within the master service. This flaw enables unauthorized remote attackers to execute arbitrary commands as if they had administrative privileges. By leveraging exposed interface methods over the remote service, attackers can effectively bypass authentication and achieve unauthorized remote code execution on the host operating system, posing significant risks to network integrity and security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Hirschmann Industrial HiVision 0 <= 06.0.06

Hirschmann Industrial HiVision 0 <= 06.0.06

Hirschmann Industrial HiVision 0 <= 07.0.02

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.