Junglewise Threat Intelligence

CVE-2024-54013: Hanwha Vision Camera auth bypass in web server

CVE-2024-54013 · Severity: high · CVSS 8.8 · Published 2026-04-28

Technologies: Hanwha Vision Knb-5000n Firmware, Hanwha Vision Knb-2000 Firmware.

Executive brief

A security flaw has been identified in the web server component of Hanwha Vision cameras. This vulnerability could allow an unauthorized person on the same local network to bypass security controls and access protected camera functions. If exploited, an attacker could potentially view private video feeds or modify device settings, compromising the security and privacy of the surveillance system.

Technical details

A vulnerability classified as Missing Authentication for Critical Function (CWE-306) exists in the web server component of Hanwha Vision KNB-2000 and KNB-5000N cameras. The flaw stems from improper request handling, which allows an attacker to bypass authentication mechanisms under certain conditions. An attacker with adjacent network access can exploit this to gain unintended access to protected administrative or operational functions without providing valid credentials. The manufacturer has released firmware version 2.23.01 to address this issue.

Affected products

  • Hanwha Vision KNB-2000 firmware before 2.23.01
  • Hanwha Vision KNB-5000N firmware before 2.23.01

Timeline

  • 2026-04-28: disclosed: Vulnerability reported by Amazon Penetration Testing engineers.
  • 2026-04-28: advisory

References