Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
dahuasecurity dvr firmware 2.608.gv00.0 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2013-6117
Dahua DVR 2.608.0000.0 and 2.608.GV00.0 allows remote malicious users to bypass authentication and obtain sensitive information including user credentials, change user passwords, clear log files, and perform other actions via a request to TCP port 37777.
Dahuasecurity Dvr Firmware 2.608.0000.0
Dahuasecurity Dvr Firmware 2.608.gv00.0
1 EDB exploit
2 Github repositories
NA
CVE-2013-3612
Dahua DVR appliances have a hardcoded password for (1) the root account and (2) an unspecified "backdoor" account, which makes it easier for remote malicious users to obtain administrative access via authorization requests involving (a) ActiveX, (b) a standalone client,...
Dahuasecurity Dvr0404hd-s -
Dahuasecurity Dvr0404hd-l -
Dahuasecurity Dvr1604hd-l -
Dahuasecurity Dvr3204hf-s -
Dahuasecurity Dvr3204lf-al -
Dahuasecurity Dvr1604hf-a-e -
Dahuasecurity Dvr5408 -
Dahuasecurity Dvr1604hf-al-e -
Dahuasecurity Dvr5808 -
Dahuasecurity Dvr5216a -
Dahuasecurity Dvr5108h -
Dahuasecurity Dvr2116h -
Dahuasecurity Dvr5108he -
Dahuasecurity Dvr2116he -
Dahuasecurity Dvr2108hc -
Dahuasecurity Dvr6404lf-s -
Dahuasecurity Dvr2404hf-s -
Dahuasecurity Dvr0404hf-u-e -
Dahuasecurity Dvr0804hf-u-e -
Dahuasecurity Dvr1604hf-l-e -
Dahuasecurity Dvr0804hf-l-e -
Dahuasecurity Dvr0404hf-a-e -
1 EDB exploit
NA
CVE-2013-3613
Dahua DVR appliances do not properly restrict UPnP requests, which makes it easier for remote malicious users to obtain access via vectors involving a replay attack against the TELNET port.
Dahuasecurity Dvr6404lf-s -
Dahuasecurity Dvr0404hf-u-e -
Dahuasecurity Dvr1604hf-u-e -
Dahuasecurity Dvr3232l -
Dahuasecurity Dvr3204lf-s -
Dahuasecurity Dvr0804hf-l-e -
Dahuasecurity Dvr0804hf-a-e -
Dahuasecurity Dvr0404hf-s-e -
Dahuasecurity Dvr1604hf-s-e -
Dahuasecurity Dvr0804hf-al-e -
Dahuasecurity Dvr5204l -
Dahuasecurity Dvr5216l -
Dahuasecurity Dvr0404hd-a -
Dahuasecurity Dvr2108h -
Dahuasecurity Dvr5116c -
Dahuasecurity Dvr2108he -
Dahuasecurity Dvr2104c -
Dahuasecurity Dvr2116c -
Dahuasecurity Dvr0404hd-l -
Dahuasecurity Dvr0804hd-l -
Dahuasecurity Dvr1604hd-l -
Dahuasecurity Dvr3224l -
1 EDB exploit
NA
CVE-2013-3614
Dahua DVR appliances have a small value for the maximum password length, which makes it easier for remote malicious users to obtain access via a brute-force attack.
Dahuasecurity Dvr0804hd-l -
Dahuasecurity Dvr1604hd-l -
Dahuasecurity Dvr3224l -
Dahuasecurity Dvr3232l -
Dahuasecurity Dvr5408 -
Dahuasecurity Dvr5416 -
Dahuasecurity Dvr0404hf-s-e -
Dahuasecurity Dvr0804hf-s-e -
Dahuasecurity Dvr5104h -
Dahuasecurity Dvr5108h -
Dahuasecurity Dvr5116h -
Dahuasecurity Dvr0404hd-a -
Dahuasecurity Dvr2104hc -
Dahuasecurity Dvr2108hc -
Dahuasecurity Dvr2116hc -
Dahuasecurity Dvr2104c -
Dahuasecurity Dvr0404hd-s -
Dahuasecurity Dvr0804 -
Dahuasecurity Dvr6404lf-s -
Dahuasecurity Dvr2404hf-s -
Dahuasecurity Dvr3204hf-s -
Dahuasecurity Dvr2404lf-al -
1 EDB exploit
NA
CVE-2013-3615
Dahua DVR appliances use a password-hash algorithm with a short hash length, which makes it easier for context-dependent malicious users to discover cleartext passwords via a brute-force attack.
Dahuasecurity Dvr0404hf-u-e -
Dahuasecurity Dvr1604hf-u-e -
Dahuasecurity Dvr3204lf-s -
Dahuasecurity Dvr1604hd-s -
Dahuasecurity Dvr0804hf-l-e -
Dahuasecurity Dvr0804hf-a-e -
Dahuasecurity Dvr1604hf-s-e -
Dahuasecurity Dvr0804hf-al-e -
Dahuasecurity Dvr5216l -
Dahuasecurity Dvr5208a -
Dahuasecurity Dvr0404hd-a -
Dahuasecurity Dvr2108h -
Dahuasecurity Dvr5116c -
Dahuasecurity Dvr2108he -
Dahuasecurity Dvr2116c -
Dahuasecurity Dvr0404hd-l -
Dahuasecurity Dvr0804hd-l -
Dahuasecurity Dvr1604hd-l -
Dahuasecurity Dvr3224l -
Dahuasecurity Dvr3232l -
Dahuasecurity Dvr5404 -
Dahuasecurity Dvr5408 -
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7028
memory leak
log injection
CVE-2024-3400
CVE-2022-48695
CVE-2022-48675
CVE-2024-34487
CVE-2024-33792
spoof
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started