CyberHappenings logo

Track cybersecurity events as they unfold. Sourced timelines. Filter, sort, and browse. Fast, privacy‑respecting. No invasive ads, no tracking.

CISA Adds Hikvision and Rockwell Automation Flaws to KEV Catalog

First reported
Last updated
1 unique sources, 1 articles

Summary

Hide ▲

CISA has added two critical vulnerabilities (CVE-2017-7921 and CVE-2021-22681) affecting Hikvision and Rockwell Automation products to its KEV catalog due to evidence of active exploitation. The flaws, both with a CVSS score of 9.8, could allow privilege escalation and unauthorized access. Federal agencies are urged to patch by March 26, 2026. CVE-2017-7921 impacts multiple Hikvision products, enabling privilege escalation and access to sensitive information. CVE-2021-22681 affects Rockwell Automation Studio 5000 Logix Designer, RSLogix 5000, and Logix Controllers, allowing unauthorized users to bypass authentication and alter configurations.

Timeline

  1. 06.03.2026 08:30 1 articles · 15h ago

    CISA Adds Hikvision and Rockwell Automation Flaws to KEV Catalog

    CISA has added two critical vulnerabilities (CVE-2017-7921 and CVE-2021-22681) to its KEV catalog due to evidence of active exploitation. These flaws impact Hikvision and Rockwell Automation products, with a CVSS score of 9.8 each. Federal agencies are urged to patch by March 26, 2026.

    Show sources

Information Snippets