Status: UPDATED
| Advisory ID: CVE-2023-7343
Key Details
| CVE | CVE-2023-7343 |
| CVSS Score / Version | 7.8 (High) / CVSS v3.1 |
| Updated | 2026-07-24 |
| CVSS Vector | CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
| CVSS Prose | attack vector is local; attack complexity is low; privileges required is none; user interaction is required; scope is unchanged; confidentiality impact is high; integrity impact is high; availability impact is high. |
| Affected products | Belden Hirschmann Industrial HiVision |
| Classified as | CWE-269 (Improper Privilege Management) |
Affected Products, Subsystems & Sectors
| Subsystems | General OT |
| Sectors | Multiple |
What to Know
Hirschmann Industrial HiVision versions 05.0.00 through 08.3.01 prior to 08.3.02 contain an arbitrary code execution vulnerability triggered when an administrator opens a maliciously crafted project file. Successful exploitation allows the attacker to execute code in the context of the HiVision process. (NVD)
What to Do
Monitor Belden's web page for any future patch releases.
References