CVE ID
CVE-2021-33044
Vulnerability Name
Dahua IP Camera Authentication Bypass Vulnerability
- Project: Dahua
- Product: IP Camera Firmware
Date
- Date Added: 2024-08-21
- Due Date: 2024-09-11
Description
Dahua IP cameras and related products contain an authentication bypass vulnerability when the NetKeyboard type argument is specified by the client during authentication.
Known To Be Used in Ransomware Campaigns?
Unknown
Action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Additional Notes
https://www.dahuasecurity.com/aboutUs/trustedCenter/details/582; https://nvd.nist.gov/vuln/detail/CVE-2021-33044
Related Security News
- Iran-Linked MuddyWater Hackers Target U.S. Networks With New Dindoor Backdoor
- CISA and FBI Raise Alerts on Exploited Flaws and Expanding HiatusRAT Campaign
- FBI spots HiatusRAT malware attacks targeting web cameras, DVRs
- CISA Urges Federal Agencies to Patch Versa Director Vulnerability by September
Top comments (0)