Some Dahua products have buffer overflow vulnerabilities. After the successful login of the legal account, the attacker sends a specific DDNS test command, which may cause the device to go down.
oryginał ENCVSS Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HDahua N54a4p
HWDahuawszystkie wersjeDahuasecurity Ipc Hx2xxx
HWDahuasecuritywszystkie wersjeDahuasecurity Ipc Hx2xxx Firmware
OSDahuasecurity< 2019-12Dahuasecurity Ipc Hx5842h
HWDahuasecuritywszystkie wersjeDahuasecurity Ipc Hx5842h Firmware
OSDahuasecurity< 2019-12Dahuasecurity Ipc Hx7842h
HWDahuasecuritywszystkie wersjeDahuasecurity Ipc Hx7842h Firmware
OSDahuasecurity< 2019-12Dahuasecurity Ipc Hxxx5x4x
HWDahuasecuritywszystkie wersjeDahuasecurity Ipc Hxxx5x4x Firmware
OSDahuasecurity< 2019-12Dahuasecurity N42b1p
HWDahuasecuritywszystkie wersjeDahuasecurity N42b1p Firmware
OSDahuasecurity< 2019-12Dahuasecurity N42b2p
HWDahuasecuritywszystkie wersjeDahuasecurity N42b2p Firmware
OSDahuasecurity< 2019-12Dahuasecurity N42b3p
HWDahuasecuritywszystkie wersjeDahuasecurity N42b3p Firmware
OSDahuasecurity< 2019-12Dahuasecurity N52a4p
HWDahuasecuritywszystkie wersjeDahuasecurity N52a4p Firmware
OSDahuasecurity< 2019-12Dahuasecurity N52b2p
HWDahuasecuritywszystkie wersjeDahuasecurity N52b2p Firmware
OSDahuasecurity< 2019-12Dahuasecurity N52b3p
HWDahuasecuritywszystkie wersjeDahuasecurity N52b3p Firmware
OSDahuasecurity< 2019-12Dahuasecurity N52b5p
HWDahuasecuritywszystkie wersjeDahuasecurity N52b5p Firmware
OSDahuasecurity< 2019-12Dahuasecurity N54a4p Firmware
OSDahuasecurity< 2019-12Dahuasecurity N54b2p
HWDahuasecuritywszystkie wersjeDahuasecurity N54b2p Firmware
OSDahuasecurity< 2019-12Dahuasecurity Ptz1a
HWDahuasecuritywszystkie wersjeDahuasecurity Ptz1a Firmware
OSDahuasecurity< 2019-12Dahuasecurity Sd1a
HWDahuasecuritywszystkie wersjeDahuasecurity Sd1a Firmware
OSDahuasecurity< 2019-12
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
Tagi
Memory
CWE
Powiązane podatności
CVE-2021-33044CRITICAL9.8⚠ KEVPL ✓ten sam produkt
Pominięcie uwierzytelnienia w urządzeniach Dahua podczas logowania
CVE-2021-33046CRITICAL9.8PL ✓ten sam produkt
Obejście uwierzytelniania w procesie resetowania hasła w urządzeniach Dahua
CVE-2020-9502CRITICAL9.8PL ✓ten sam produkt
Przewidywalne Session ID w urządzeniach Dahua — podatność CRITICAL
CVE-2019-9682HIGH8.1ten sam produkt
Dahua devices with Build time before December 2019 use strong security login mode by default, but in order to ...
CVE-2020-9500MEDIUM4.9ten sam produkt
Some products of Dahua have Denial of Service vulnerabilities. After the successful login of the legal account...