Description
Some Dahua products have access control vulnerability in the password reset process. Attackers can exploit this vulnerability through specific deployments to reset device passwords.
Published: 2022-01-13
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-19761 Some Dahua products have access control vulnerability in the password reset process. Attackers can exploit this vulnerability through specific deployments to reset device passwords.
History

No history.

Subscriptions

Dahuasecurity Asc2204c Asc2204c Firmware Hcvr7xxx Hcvr7xxx Firmware Hcvr8xxx Hcvr8xxx Firmware Ipc-hx1xxx Ipc-hx1xxx Firmware Ipc-hx2xxx Ipc-hx2xxx Firmware Ipc-hx3xxx Ipc-hx3xxx Firmware Ipc-hx5\(4\)\(3\)xxx Ipc-hx5\(4\)\(3\)xxx Firmware Ipc-hx5xxx Ipc-hx5xxx Firmware Nvr1xxx Nvr1xxx Firmware Nvr2xxx Nvr2xxx Firmware Nvr4xxx Nvr4xxx Firmware Nvr5xxx Nvr5xxx Firmware Sd1a1 Sd1a1 Firmware Sd22 Sd22 Firmware Sd49 Sd49 Firmware Sd50 Sd50 Firmware Sd52c Sd52c Firmware Sd6al Sd6al Firmware Tpc-bf1241 Tpc-bf1241 Firmware Tpc-bf2221 Tpc-bf2221 Firmware Tpc-bf5x01 Tpc-bf5x01 Firmware Tpc-pt8x21x Tpc-pt8x21x Firmware Tpc-sd2221 Tpc-sd2221 Firmware Tpc-sd8x21 Tpc-sd8x21 Firmware Vtox20xf Vtox20xf Firmware Xvr4xxx Xvr4xxx Firmware Xvr5xxx Xvr5xxx Firmware Xvr7xxx Xvr7xxx Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: dahua

Published:

Updated: 2024-08-03T23:42:19.550Z

Reserved: 2021-05-17T00:00:00.000Z

Link: CVE-2021-33046

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-01-13T21:15:07.753

Modified: 2024-11-21T06:08:11.233

Link: CVE-2021-33046

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses