// For flags

CVE-2020-9499

 

Severity Score

7.2
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Some Dahua products have buffer overflow vulnerabilities. After the successful login of the legal account, the attacker sends a specific DDNS test command, which may cause the device to go down.

Algunos productos Dahua presentan vulnerabilidades de desbordamiento de búfer. Después del inicio de sesión con éxito de la cuenta legal, el atacante envía un comando de prueba DDNS específico, que puede hacer que el dispositivo se caiga.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
Single
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2020-03-01 CVE Reserved
  • 2020-04-09 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-04 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CAPEC
References (1)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Dahuasecurity
Search vendor "Dahuasecurity"
Sd6al Firmware
Search vendor "Dahuasecurity" for product "Sd6al Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd6al Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd6al
Search vendor "Dahuasecurity" for product "Sd6al"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Sd5a Firmware
Search vendor "Dahuasecurity" for product "Sd5a Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd5a Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd5a
Search vendor "Dahuasecurity" for product "Sd5a"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Sd1a Firmware
Search vendor "Dahuasecurity" for product "Sd1a Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd1a Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd1a
Search vendor "Dahuasecurity" for product "Sd1a"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ptz1a Firmware
Search vendor "Dahuasecurity" for product "Ptz1a Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ptz1a Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ptz1a
Search vendor "Dahuasecurity" for product "Ptz1a"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Sd50 Firmware
Search vendor "Dahuasecurity" for product "Sd50 Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd50 Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd50
Search vendor "Dahuasecurity" for product "Sd50"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Sd52c Firmware
Search vendor "Dahuasecurity" for product "Sd52c Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd52c Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd52c
Search vendor "Dahuasecurity" for product "Sd52c"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx5842h Firmware
Search vendor "Dahuasecurity" for product "Ipc-hx5842h Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hx5842h Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx5842h
Search vendor "Dahuasecurity" for product "Ipc-hx5842h"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx7842h Firmware
Search vendor "Dahuasecurity" for product "Ipc-hx7842h Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hx7842h Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx7842h
Search vendor "Dahuasecurity" for product "Ipc-hx7842h"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx2xxx Firmware
Search vendor "Dahuasecurity" for product "Ipc-hx2xxx Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hx2xxx Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx2xxx
Search vendor "Dahuasecurity" for product "Ipc-hx2xxx"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hxxx5x4x Firmware
Search vendor "Dahuasecurity" for product "Ipc-hxxx5x4x Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hxxx5x4x Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hxxx5x4x
Search vendor "Dahuasecurity" for product "Ipc-hxxx5x4x"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N42b1p Firmware
Search vendor "Dahuasecurity" for product "N42b1p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N42b1p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N42b1p
Search vendor "Dahuasecurity" for product "N42b1p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N42b2p Firmware
Search vendor "Dahuasecurity" for product "N42b2p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N42b2p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N42b2p
Search vendor "Dahuasecurity" for product "N42b2p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N42b3p Firmware
Search vendor "Dahuasecurity" for product "N42b3p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N42b3p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N42b3p
Search vendor "Dahuasecurity" for product "N42b3p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N52a4p Firmware
Search vendor "Dahuasecurity" for product "N52a4p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N52a4p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N52a4p
Search vendor "Dahuasecurity" for product "N52a4p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N54a4p Firmware
Search vendor "Dahuasecurity" for product "N54a4p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N54a4p Firmware" and version " < 2019-12"
-
Affected
in Dahua
Search vendor "Dahua"
N54a4p
Search vendor "Dahua" for product "N54a4p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N52b2p Firmware
Search vendor "Dahuasecurity" for product "N52b2p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N52b2p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N52b2p
Search vendor "Dahuasecurity" for product "N52b2p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N52b5p Firmware
Search vendor "Dahuasecurity" for product "N52b5p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N52b5p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N52b5p
Search vendor "Dahuasecurity" for product "N52b5p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N52b3p Firmware
Search vendor "Dahuasecurity" for product "N52b3p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N52b3p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N52b3p
Search vendor "Dahuasecurity" for product "N52b3p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N54b2p Firmware
Search vendor "Dahuasecurity" for product "N54b2p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N54b2p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N54b2p
Search vendor "Dahuasecurity" for product "N54b2p"
--
Safe