// For flags

CVE-2020-9502

 

Severity Score

9.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Some Dahua products with Build time before December 2019 have Session ID predictable vulnerabilities. During normal user access, an attacker can use the predicted Session ID to construct a data packet to attack the device.

Algunos productos Dahua con tiempo de Compilación antes de diciembre de 2019 presentan vulnerabilidades predecibles del ID de Sesión. Durante un acceso de usuario normal, un atacante puede usar el ID de Sesión previsto para construir un paquete de datos para atacar el dispositivo.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2020-03-01 CVE Reserved
  • 2020-05-13 CVE Published
  • 2023-03-07 EPSS Updated
  • 2024-08-04 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-330: Use of Insufficiently Random Values
CAPEC
References (1)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Dahuasecurity
Search vendor "Dahuasecurity"
Sd6al Firmware
Search vendor "Dahuasecurity" for product "Sd6al Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd6al Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd6al
Search vendor "Dahuasecurity" for product "Sd6al"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Sd5a Firmware
Search vendor "Dahuasecurity" for product "Sd5a Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd5a Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd5a
Search vendor "Dahuasecurity" for product "Sd5a"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Sd1a Firmware
Search vendor "Dahuasecurity" for product "Sd1a Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd1a Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd1a
Search vendor "Dahuasecurity" for product "Sd1a"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ptz1a Firmware
Search vendor "Dahuasecurity" for product "Ptz1a Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ptz1a Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ptz1a
Search vendor "Dahuasecurity" for product "Ptz1a"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Sd50 Firmware
Search vendor "Dahuasecurity" for product "Sd50 Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd50 Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd50
Search vendor "Dahuasecurity" for product "Sd50"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Sd52c Firmware
Search vendor "Dahuasecurity" for product "Sd52c Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Sd52c Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Sd52c
Search vendor "Dahuasecurity" for product "Sd52c"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx5842h Firmware
Search vendor "Dahuasecurity" for product "Ipc-hx5842h Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hx5842h Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx5842h
Search vendor "Dahuasecurity" for product "Ipc-hx5842h"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx7842h Firmware
Search vendor "Dahuasecurity" for product "Ipc-hx7842h Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hx7842h Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx7842h
Search vendor "Dahuasecurity" for product "Ipc-hx7842h"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx2xxx Firmware
Search vendor "Dahuasecurity" for product "Ipc-hx2xxx Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hx2xxx Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hx2xxx
Search vendor "Dahuasecurity" for product "Ipc-hx2xxx"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hxxx5x4x Firmware
Search vendor "Dahuasecurity" for product "Ipc-hxxx5x4x Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hxxx5x4x Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hxxx5x4x
Search vendor "Dahuasecurity" for product "Ipc-hxxx5x4x"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N42b1p Firmware
Search vendor "Dahuasecurity" for product "N42b1p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N42b1p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N42b1p
Search vendor "Dahuasecurity" for product "N42b1p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N42b2p Firmware
Search vendor "Dahuasecurity" for product "N42b2p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N42b2p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N42b2p
Search vendor "Dahuasecurity" for product "N42b2p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N42b3p Firmware
Search vendor "Dahuasecurity" for product "N42b3p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N42b3p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N42b3p
Search vendor "Dahuasecurity" for product "N42b3p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N52a4p Firmware
Search vendor "Dahuasecurity" for product "N52a4p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N52a4p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N52a4p
Search vendor "Dahuasecurity" for product "N52a4p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N54a4p Firmware
Search vendor "Dahuasecurity" for product "N54a4p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N54a4p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N54a4p
Search vendor "Dahuasecurity" for product "N54a4p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N52b2p Firmware
Search vendor "Dahuasecurity" for product "N52b2p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N52b2p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N52b2p
Search vendor "Dahuasecurity" for product "N52b2p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N52b5p Firmware
Search vendor "Dahuasecurity" for product "N52b5p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N52b5p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N52b5p
Search vendor "Dahuasecurity" for product "N52b5p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N52b3p Firmware
Search vendor "Dahuasecurity" for product "N52b3p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N52b3p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N52b3p
Search vendor "Dahuasecurity" for product "N52b3p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
N54b2p Firmware
Search vendor "Dahuasecurity" for product "N54b2p Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "N54b2p Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
N54b2p
Search vendor "Dahuasecurity" for product "N54b2p"
--
Safe
Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hdbw1320e-w Firmware
Search vendor "Dahuasecurity" for product "Ipc-hdbw1320e-w Firmware"
< 2019-12
Search vendor "Dahuasecurity" for product "Ipc-hdbw1320e-w Firmware" and version " < 2019-12"
-
Affected
in Dahuasecurity
Search vendor "Dahuasecurity"
Ipc-hdbw1320e-w
Search vendor "Dahuasecurity" for product "Ipc-hdbw1320e-w"
--
Safe