// For flags

CVE-2019-9682

 

Severity Score

8.1
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Dahua devices with Build time before December 2019 use strong security login mode by default, but in order to be compatible with the normal login of early devices, some devices retain the weak security login mode that users can control. If the user uses a weak security login method, an attacker can monitor the device network to intercept network packets to attack the device. So it is recommended that the user disable this login method.

Los dispositivos Dahua con tiempo de Compilación antes de diciembre de 2019, usan un modo de inicio de sesión de seguridad fuerte por defecto, pero en función de ser compatibles con el inicio de sesión normal de los primeros dispositivos, algunos dispositivos conservan el modo de inicio de sesión de seguridad débil que los usuarios pueden controlar. Si el usuario usa un método de inicio de sesión de seguridad débil, un atacante puede monitorear la red del dispositivo para interceptar los paquetes de red para atacar el dispositivo. Por lo tanto, es recomendado que el usuario desactive este método de inicio de sesión.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2019-03-11 CVE Reserved
  • 2020-05-13 CVE Published
  • 2023-03-07 EPSS Updated
  • 2024-08-04 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-276: Incorrect Default Permissions
CAPEC
References (1)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Dahuasecurity
Search vendor "Dahuasecurity"
Sd6al Firmware
Search vendor "Dahuasecurity" for product "Sd6al Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd6al Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd6al
Search vendor "Dahuasecurity" for product "Sd6al"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Sd5a Firmware
Search vendor "Dahuasecurity" for product "Sd5a Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd5a Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd5a
Search vendor "Dahuasecurity" for product "Sd5a"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Sd1a Firmware
Search vendor "Dahuasecurity" for product "Sd1a Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd1a Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd1a
Search vendor "Dahuasecurity" for product "Sd1a"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ptz1a Firmware
Search vendor "Dahuasecurity" for product "Ptz1a Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ptz1a Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ptz1a
Search vendor "Dahuasecurity" for product "Ptz1a"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Sd50 Firmware
Search vendor "Dahuasecurity" for product "Sd50 Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd50 Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd50
Search vendor "Dahuasecurity" for product "Sd50"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Sd52c Firmware
Search vendor "Dahuasecurity" for product "Sd52c Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd52c Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd52c
Search vendor "Dahuasecurity" for product "Sd52c"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx5842h Firmware
Search vendor "Dahuasecurity" for product "Ipc-hx5842h Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hx5842h Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx5842h
Search vendor "Dahuasecurity" for product "Ipc-hx5842h"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx7842h Firmware
Search vendor "Dahuasecurity" for product "Ipc-hx7842h Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hx7842h Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx7842h
Search vendor "Dahuasecurity" for product "Ipc-hx7842h"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx2xxx Firmware
Search vendor "Dahuasecurity" for product "Ipc-hx2xxx Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hx2xxx Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx2xxx
Search vendor "Dahuasecurity" for product "Ipc-hx2xxx"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hxxx5x4x Firmware
Search vendor "Dahuasecurity" for product "Ipc-hxxx5x4x Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hxxx5x4x Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hxxx5x4x
Search vendor "Dahuasecurity" for product "Ipc-hxxx5x4x"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N42b1p Firmware
Search vendor "Dahuasecurity" for product "N42b1p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N42b1p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N42b1p
Search vendor "Dahuasecurity" for product "N42b1p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N42b2p Firmware
Search vendor "Dahuasecurity" for product "N42b2p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N42b2p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N42b2p
Search vendor "Dahuasecurity" for product "N42b2p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N42b3p Firmware
Search vendor "Dahuasecurity" for product "N42b3p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N42b3p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N42b3p
Search vendor "Dahuasecurity" for product "N42b3p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N52a4p Firmware
Search vendor "Dahuasecurity" for product "N52a4p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N52a4p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N52a4p
Search vendor "Dahuasecurity" for product "N52a4p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N54a4p Firmware
Search vendor "Dahuasecurity" for product "N54a4p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N54a4p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N54a4p
Search vendor "Dahuasecurity" for product "N54a4p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N52b2p Firmware
Search vendor "Dahuasecurity" for product "N52b2p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N52b2p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N52b2p
Search vendor "Dahuasecurity" for product "N52b2p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N52b5p Firmware
Search vendor "Dahuasecurity" for product "N52b5p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N52b5p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N52b5p
Search vendor "Dahuasecurity" for product "N52b5p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N52b3p Firmware
Search vendor "Dahuasecurity" for product "N52b3p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N52b3p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N52b3p
Search vendor "Dahuasecurity" for product "N52b3p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N54b2p Firmware
Search vendor "Dahuasecurity" for product "N54b2p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N54b2p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N54b2p
Search vendor "Dahuasecurity" for product "N54b2p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hdbw1320e-w Firmware
Search vendor "Dahuasecurity" for product "Ipc-hdbw1320e-w Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hdbw1320e-w Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hdbw1320e-w
Search vendor "Dahuasecurity" for product "Ipc-hdbw1320e-w"
--
Safe