LOW · 3.7

CVE-2025-52598

Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has found a flaw that camera's client service does not perform certi...

Vulnerability Description

Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has found a flaw that camera's client service does not perform certificate validation. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.

CVSS Score

3.7

LOW

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
LOW

Affected Products

VendorProductVersions
HanwhavisionXno-9082Rz Firmware< 2.24.00
HanwhavisionXno-9082Rz-
HanwhavisionXnv-9082R Firmware< 2.24.00
HanwhavisionXnv-9082R-
HanwhavisionXnd-9082Rf Firmware< 2.24.00
HanwhavisionXnd-9082Rf-
HanwhavisionXnd-9082Rv Firmware< 2.24.00
HanwhavisionXnd-9082Rv-
HanwhavisionXnb-9002 Firmware< 2.24.00
HanwhavisionXnb-9002-
HanwhavisionXnf-9010Rv Firmware< 2.24.00
HanwhavisionXnf-9010Rv-
HanwhavisionXnf-9010Rs Firmware< 2.24.00
HanwhavisionXnf-9010Rs-
HanwhavisionXnf-9010Rvm Firmware< 2.24.00
HanwhavisionXnf-9010Rvm-
HanwhavisionXnd-C7083Rv Firmware< 2.24.00
HanwhavisionXnd-C7083Rv-
HanwhavisionXno-C7083R Firmware< 2.24.00
HanwhavisionXno-C7083R-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2025-52598?

CVE-2025-52598 is a vulnerability with a CVSS score of 3.7 (LOW). Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has found a flaw that camera's client service does not perform certi...

How severe is CVE-2025-52598?

CVE-2025-52598 has been rated LOW with a CVSS base score of 3.7/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2025-52598?

Check the references section above for vendor advisories and patch information. Affected products include: Hanwhavision Xno-9082Rz Firmware, Hanwhavision Xno-9082Rz, Hanwhavision Xnv-9082R Firmware, Hanwhavision Xnv-9082R, Hanwhavision Xnd-9082Rf Firmware.