Description
Some Dahua software products have a vulnerability of unauthenticated search for devices. After bypassing the firewall access control policy, by sending a specific crafted packet to the vulnerable interface, an attacker could unauthenticated search for devices in range of IPs from remote DSS Server.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-48304 | Some Dahua software products have a vulnerability of unauthenticated search for devices. After bypassing the firewall access control policy, by sending a specific crafted packet to the vulnerable interface, an attacker could unauthenticated search for devices in range of IPs from remote DSS Server. |
References
History
Mon, 14 Apr 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-306 | |
| Metrics |
ssvc
|
Subscriptions
Status: PUBLISHED
Assigner: dahua
Published:
Updated: 2025-04-14T13:08:12.283Z
Reserved: 2022-11-14T00:00:00.000Z
Link: CVE-2022-45432
Updated: 2024-08-03T14:09:56.985Z
Status : Modified
Published: 2022-12-27T18:15:10.847
Modified: 2025-04-14T14:15:21.160
Link: CVE-2022-45432
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD