CVE-2017-7921CISA KEV: Actively Exploited

Hikvision Multiple Products Improper Authentication Vulnerability

Published Mar 5, 2026·Updated Mar 5, 2026

Description

Multiple Hikvision products contain an improper authentication vulnerability that could allow a malicious user to escalate privileges on the system and gain access to sensitive information.

Public Exploits & PoCs20 found

PoC: CVE-2017-7921-EXP

Hikvision camera CVE-2017-7921-EXP

53

PoC: CVE-2017-7921

海康威视未授权访问检测poc及口令爆破

29

PoC: hikvision_CVE-2017-7921_auth_bypass_config_decryptor

This python file will decrypt the configurationFile used by hikvision cameras vulnerable to CVE-2017-7921.

28

PoC: cve-2017-7921-golang

Hikvision IP camera access bypass exploit, developed by golang.

6

PoC: CVE-2017-7921-rewrite

simple CVE-2017-7921 rewrite in python by me. for educational purposes only!

PoC: CVE-2017-7921

HikVision Auth Bypass CVE, tool is able to extract credentials, and take snapshots based on magic cookie or supplied credentials.

PoC: CVE-2017-7921-Research-Toolkit

用于借助FOFA快速测试海康威视的CVE-2017-7921漏洞,并且给出登陆账号和密码,并输出json文件。

PoC: hikvision-exploiter

CVE-2017-7921, CVE-2021-36260 updated 21/01/2026

PoC: CVE-2017-7921

CVE-2017-7921 is a critical vulnerability (CVSS score: 9.8) affecting multiple Hikvision IP camera and DVR models, first disclosed in 2017. It stems from an improper authentication flaw that allows unauthenticated remote attackers to bypass login mechanisms and gain unauthorized access to sensitive system information

PoC: Hikvision-City-Hunter

This tool is a modern evolution of older PoCs like those for CVE-2017-7921 and ICSA-17-124-01, updated for 2025 with live console output, threading for speed, and honeypot filtering (skips devices with >12 open ports). It's built for red teamers, bug bounty hunters, and security researchers to identify

PoC: CVE-2017-7921

CVE-2017-7921 exploit. Allows admin password retrieval and automatic snapshot download.

PoC: CVE-2017-7921_reproduces_decrypted_file_sharing

CVE-2017-7921复现解密文件分享 免费下载

PoC: hikvision_probe

Identify hikvision ip and probe for cve-s (CVE-2017-7921, CVE-2022-28171, CVE-2021-36260)

PoC: Hikvision---CVE-2017-7921

Уязвимость микропрограммного обеспечения IP-камер Hikvision связана с недостатками процедуры аутентификации. Эксплуатация уязвимости может позволить нарушителю, действующему удаленно, повысить свои привилегии

PoC: HikVision-CVE-2017-7921

Test For CVE-2017–7921;

PoC: AnonHik

Python script get image from Hikvision camera with CVE-2017-7921 vulnerability

PoC: CVE-2017-7921

CVE-2017-7921 exploit. Allows admin password retrieval and automatic snapshot download.

PoC: CVE-2017-7921-EXPLOIT

The presence of a proof of concept (POC) further underscores the criticality of this security flaw. It demonstrates the feasibility of an attacker exploiting the vulnerability and reinforces the urgency of applying security patches or updates to mitigate the risk.

PoC: hikivision

CVE-2017-7921 EXPLOIT

PoC: CVE-2017-7921

CVE-2017-7921-EXP Hikvision camera

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free