CVE-2021-33046
13.01.2022, 21:15
Some Dahua products have access control vulnerability in the password reset process. Attackers can exploit this vulnerability through specific deployments to reset device passwords.Enginsight
| Vendor | Product | Version |
|---|---|---|
| dahuasecurity | ipc-hx1xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | ipc-hx2xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | ipc-hx3xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | ipc-hx5\(4\)\(3\)xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | ipc-hx5xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | sd1a1_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | sd22_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | sd49_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | sd50_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | sd52c_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | sd6al_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | tpc-bf1241_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | tpc-bf2221_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | tpc-bf5x01_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | tpc-pt8x21x_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | tpc-sd2221_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | tpc-sd8x21_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | nvr1xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | nvr2xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | nvr4xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | nvr5xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | xvr4xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | xvr5xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | xvr7xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | hcvr7xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | hcvr8xxx_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | vtox20xf_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
| dahuasecurity | asc2204c_firmware | 2017-7 ≤ 𝑥 ≤ 2021-7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References