Hanwha Vision disclosed patched firmware for two high-severity vulnerabilities affecting its camera and web server components after the flaws were identified by Amazon penetration testing engineers. CVE-2024-54013 is an authentication bypass issue classified as CWE-306 that can allow unintended access to protected functions because of a request-handling weakness in a web server component.
The company also addressed CVE-2024-54012, a command injection flaw classified as CWE-78, in which improperly validated input can let specially crafted requests execute malicious commands on affected camera systems. Both CVEs carry CVSS v4.0 ratings indicating high impact to confidentiality, integrity, and availability, and Hanwha Vision directed customers to its advisory for firmware updates, remediation guidance, and available workarounds.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
New CVE records for CVE-2024-54012 and CVE-2024-54013 were published, documenting a command injection vulnerability and an authentication bypass vulnerability respectively. Both entries classify the flaws as high severity and reference Hanwha Vision's remediation guidance.
Hanwha Vision released patched firmware and published a vendor report with remediation details and workarounds for an authentication bypass flaw in a web server component and a command injection flaw in a camera system. The issues were identified by penetration testing engineers at Amazon.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.