9.8
CVSSv3

CVE-2021-33046

Published: 13/01/2022 Updated: 25/01/2022
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Some Dahua products have access control vulnerability in the password reset process. Attackers can exploit this vulnerability through specific deployments to reset device passwords.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dahuasecurity ipc-hx1xxx firmware

dahuasecurity ipc-hx2xxx firmware

dahuasecurity ipc-hx3xxx firmware

dahuasecurity ipc-hx5(4)(3)xxx firmware

dahuasecurity ipc-hx5xxx firmware

dahuasecurity sd1a1 firmware

dahuasecurity sd22 firmware

dahuasecurity sd49 firmware

dahuasecurity sd50 firmware

dahuasecurity sd52c firmware

dahuasecurity sd6al firmware

dahuasecurity tpc-bf1241 firmware

dahuasecurity tpc-bf2221 firmware

dahuasecurity tpc-bf5x01 firmware

dahuasecurity tpc-pt8x21x firmware

dahuasecurity tpc-sd2221 firmware

dahuasecurity tpc-sd8x21 firmware

dahuasecurity nvr1xxx firmware

dahuasecurity nvr2xxx firmware

dahuasecurity nvr4xxx firmware

dahuasecurity nvr5xxx firmware

dahuasecurity xvr4xxx firmware

dahuasecurity xvr5xxx firmware

dahuasecurity xvr7xxx firmware

dahuasecurity hcvr7xxx firmware

dahuasecurity hcvr8xxx firmware

dahuasecurity vtox20xf firmware

dahuasecurity asc2204c firmware