logo

Hikvision and Rockwell Automation CVSS 9.8 Flaws Added to CISA KEV Catalog

ID: 0d64121d-cd07-5c2b-b1b2-ce5774365a0c

STIX ID: report--0d64121d-cd07-5c2b-b1b2-ce5774365a0c

Feed Name: The Hacker News

Threat Score
75/100

Date Published: 2026-03-06

Date Updated: 2026-04-24

Author: [email protected] (The Hacker News)

...
...

CISA has added two critical-severity vulnerabilities—CVE-2017-7921 (Hikvision improper authentication) and CVE-2021-22681 (Rockwell Automation insufficiently protected credentials)—to its Known Exploited Vulnerabilities catalog, citing active exploitation evidence for the Hikvision issue; both are CVSS 9.8 and FCEB agencies are required to remediate by March 26, 2026 under BOD 22-01.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.