Vulnerabilities > Dahuasecurity > High

DATE CVE VULNERABILITY TITLE RISK
2024-07-31 CVE-2024-39944 Unspecified vulnerability in Dahuasecurity products
A vulnerability has been found in Dahua products.Attackers can send carefully crafted data packets to the interface with vulnerabilities, causing the device to crash.
network
low complexity
dahuasecurity
7.5
2024-07-31 CVE-2024-39946 Unspecified vulnerability in Dahuasecurity products
A vulnerability has been found in Dahua products.After obtaining the administrator's username and password, the attacker can send a carefully crafted data packet to the interface with vulnerabilities, causing device initialization.
network
low complexity
dahuasecurity
7.2
2024-07-31 CVE-2024-39948 Unspecified vulnerability in Dahuasecurity products
A vulnerability has been found in Dahua products. Attackers can send carefully crafted data packets to the interface with vulnerabilities, causing the device to crash.
network
low complexity
dahuasecurity
7.5
2024-07-31 CVE-2024-39949 Unspecified vulnerability in Dahuasecurity products
A vulnerability has been found in Dahua products. Attackers can send carefully crafted data packets to the interface with vulnerabilities, causing the device to crash.
network
low complexity
dahuasecurity
7.5
2022-12-27 CVE-2022-45423 Missing Authentication for Critical Function vulnerability in Dahuasecurity products
Some Dahua software products have a vulnerability of unauthenticated request of MQTT credentials.
network
low complexity
dahuasecurity CWE-306
7.5
2022-12-27 CVE-2022-45425 Use of Hard-coded Credentials vulnerability in Dahuasecurity products
Some Dahua software products have a vulnerability of using of hard-coded cryptographic key.
network
low complexity
dahuasecurity CWE-798
7.5
2022-12-27 CVE-2022-45427 Unrestricted Upload of File with Dangerous Type vulnerability in Dahuasecurity products
Some Dahua software products have a vulnerability of unrestricted upload of file.
network
low complexity
dahuasecurity CWE-434
7.2
2022-12-27 CVE-2022-45429 Server-Side Request Forgery (SSRF) vulnerability in Dahuasecurity products
Some Dahua software products have a vulnerability of server-side request forgery (SSRF).
network
low complexity
dahuasecurity CWE-918
7.5
2022-12-27 CVE-2022-45431 Unspecified vulnerability in Dahuasecurity products
Some Dahua software products have a vulnerability of unauthenticated restart of remote DSS Server.
network
low complexity
dahuasecurity
7.5
2022-01-13 CVE-2021-33046 Improper Authentication vulnerability in Dahuasecurity products
Some Dahua products have access control vulnerability in the password reset process.
network
low complexity
dahuasecurity CWE-287
7.5