CVE-2021-33044
15.09.2021, 22:15
The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.Enginsight
Vendor | Product | Version |
---|---|---|
dahuasecurity | ipc-hum7xxx_firmware | 𝑥 < 2.820.0000000.5.r.210705 |
dahuasecurity | ipc-hx3xxx_firmware | 𝑥 < 2.800.0000000.29.r.210630 |
dahuasecurity | ipc-hx5xxx_firmware | 𝑥 < 2.820.0000000.18.r.210705 |
dahuasecurity | sd1a1_firmware | 𝑥 < 2.812.0000007.0.r.210706 |
dahuasecurity | sd22_firmware | 𝑥 < 2.812.0000007.0.r.210706 |
dahuasecurity | sd41_firmware | 𝑥 < 2.812.0000007.0.r.210706 |
dahuasecurity | sd50_firmware | 𝑥 < 2.812.0000007.0.r.210706 |
dahuasecurity | sd52c_firmware | 𝑥 < 2.812.0000007.0.r.210706 |
dahuasecurity | sd6al_firmware | 𝑥 < 2.812.0000007.0.r.210706 |
dahuasecurity | tpc-bf1241_firmware | 𝑥 < 2.630.0000000.6.r.210707 |
dahuasecurity | tpc-bf2221_firmware | 𝑥 < 2.630.0000000.10.r.210707 |
dahuasecurity | tpc-bf5x01_firmware | 𝑥 < 2.630.0000000.12.r.210707 |
dahuasecurity | tpc-pt8x21b_firmware | 𝑥 < 2.630.0000000.10.r.210701 |
dahuasecurity | tpc-sd2221_firmware | 𝑥 ≤ 2.630.0000000.7.r.210707 |
dahuasecurity | tpc-sd8x21_firmware | 𝑥 < 2.630.0000000.9.r.210706 |
dahuasecurity | vto-65xxx_firmware | 𝑥 < 4.300.0000004.0.r.210715 |
dahuasecurity | vto-75x95x_firmware | 𝑥 < 4.300.0000003.0.r.210714 |
dahuasecurity | vth-542xh_firmware | 𝑥 < 4.500.0000002.0.r.210715 |
dahuasecurity | tpc-bf5x21_firmware | 𝑥 < 2.630.0000000.8.r.210630 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References