← Back

Dahuasecurity

dahuasecurity

58 CVEs • 748 products

Products (748)

Click to collapse
Toggle
Dss Express
dss_express
Sd50 Firmware
sd50_firmware
Dvr0404hd A
dvr0404hd-a
Dvr0404hd L
dvr0404hd-l
Dvr0404hd S
dvr0404hd-s
Dvr0404hd U
dvr0404hd-u
Dvr0404hf A E
dvr0404hf-a-e
Dvr0404hf S E
dvr0404hf-s-e
Dvr0404hf U E
dvr0404hf-u-e
Dvr0804
dvr0804
Dvr0804hd L
dvr0804hd-l
Dvr0804hd S
dvr0804hd-s
Dvr0804hf A E
dvr0804hf-a-e
Dvr0804hf L E
dvr0804hf-l-e
Dvr0804hf S E
dvr0804hf-s-e
Dvr0804hf U E
dvr0804hf-u-e
Dvr1604hd L
dvr1604hd-l
Dvr1604hd S
dvr1604hd-s
Dvr1604hf A E
dvr1604hf-a-e
Dvr1604hf L E
dvr1604hf-l-e
Dvr1604hf S E
dvr1604hf-s-e
Dvr1604hf U E
dvr1604hf-u-e
Dvr2104c
dvr2104c
Dvr2104h
dvr2104h
Dvr2104hc
dvr2104hc
Dvr2104he
dvr2104he
Dvr2108c
dvr2108c
Dvr2108h
dvr2108h
Dvr2108hc
dvr2108hc
Dvr2108he
dvr2108he
Dvr2116c
dvr2116c
Dvr2116h
dvr2116h
Dvr2116hc
dvr2116hc
Dvr2116he
dvr2116he
Dvr2404hf S
dvr2404hf-s

CVEs (58)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Dahuasecurity
1Ip Camera Firmware
Nov 21, 2024
Jul 24, 2018
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Dahua IP camera products using firmware versions prior to V2.400.0000.14.R.20170713 include a version of the Sonia web interface that may be vulnerable to a stack buffer overflow. Dahua IP camera products include an appl...Show more
Dahua IP camera products using firmware versions prior to V2.400.0000.14.R.20170713 include a version of the Sonia web interface that may be vulnerable to a stack buffer overflow. Dahua IP camera products include an application known as Sonia (/usr/bin/sonia) that provides the web interface and other services for controlling the IP camera remotely. Versions of Sonia included in firmware versions prior to DH_IPC-Consumer-Zi-Themis_Eng_P_V2.408.0000.11.R.20170621 do not validate input data length for the 'password' field of the web interface. A remote, unauthenticated attacker may submit a crafted POST request to the IP camera's Sonia web interface that may lead to out-of-bounds memory operations and loss of availability or remote code execution. The issue was originally identified by the researcher in firmware version DH_IPC-HX1X2X-Themis_EngSpnFrn_N_V2.400.0000.30.R.20160803.Show less
1Dahuasecurity
6Ipc Hdbw4xxx Firmware
Ipc Hdbw5xxx FirmwareXvr5x04 Firmware+3 more
Nov 21, 2024
May 23, 2018
N/A· v4
8.8 HIGH· v3
4.0 MEDIUM· v2
Privilege escalation vulnerability found in some Dahua IP devices. Attacker in possession of low privilege account can gain access to credential information of high privilege account and further obtain device information...Show more
Privilege escalation vulnerability found in some Dahua IP devices. Attacker in possession of low privilege account can gain access to credential information of high privilege account and further obtain device information or attack the device.Show less
1Dahuasecurity
25Dh Sd2xxxxx Firmware
Dh Sd4xxxxx FirmwareDh Sd5xxxxx Firmware+22 more
May 13, 2026
Nov 28, 2017
N/A· v4
9.8 CRITICAL· v3
5.0 MEDIUM· v2
Customer of Dahua IP camera or IP PTZ could submit relevant device information to receive a time limited temporary password from Dahua authorized dealer to reset the admin password. The algorithm used in this mechanism i...Show more
Customer of Dahua IP camera or IP PTZ could submit relevant device information to receive a time limited temporary password from Dahua authorized dealer to reset the admin password. The algorithm used in this mechanism is potentially at risk of being compromised and subsequently utilized by attacker.Show less
1Dahuasecurity
9Ipc Hdbw4x00 Firmware
Ipc Hdbw5x00 FirmwareIpc Hdw4300s Firmware+6 more
May 13, 2026
Nov 27, 2017
N/A· v4
6.5 MEDIUM· v3
5.8 MEDIUM· v2
Firmware upgrade authentication bypass vulnerability was found in Dahua IPC-HDW4300S and some IP products. The vulnerability was caused by internal Debug function. This particular function was used for problem analysis a...Show more
Firmware upgrade authentication bypass vulnerability was found in Dahua IPC-HDW4300S and some IP products. The vulnerability was caused by internal Debug function. This particular function was used for problem analysis and performance tuning during product development phase. It allowed the device to receive only specific data (one direction, no transmit) and therefore it was not involved in any instance of collecting user privacy data or allowing remote code execution.Show less
1Dahuasecurity
22Nvr5208 4ks2 Firmware
Nvr5208 8p 4ks2 FirmwareNvr5216 16p 4ks2 Firmware+19 more
May 13, 2026
Nov 13, 2017
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
Authentication vulnerability found in Dahua NVR models NVR50XX, NVR52XX, NVR54XX, NVR58XX with software before DH_NVR5xxx_Eng_P_V2.616.0000.0.R.20171102. Attacker could exploit this vulnerability to gain access to additi...Show more
Authentication vulnerability found in Dahua NVR models NVR50XX, NVR52XX, NVR54XX, NVR58XX with software before DH_NVR5xxx_Eng_P_V2.616.0000.0.R.20171102. Attacker could exploit this vulnerability to gain access to additional operations by means of forging json message.Show less
1Dahuasecurity
15Dh Hcvr4xxx Firmware
Dh Hcvr5xxx FirmwareDh Ipc Hdbw13a0sn Firmware+12 more
May 13, 2026
May 6, 2017
N/A· v4
7.3 HIGH· v3
7.5 HIGH· v2
A Use of Password Hash Instead of Password for Authentication issue was discovered in Dahua DH-IPC-HDBW23A0RN-ZS, DH-IPC-HDBW13A0SN, DH-IPC-HDW1XXX, DH-IPC-HDW2XXX, DH-IPC-HDW4XXX, DH-IPC-HFW1XXX, DH-IPC-HFW2XXX, DH-IPC-...Show more
A Use of Password Hash Instead of Password for Authentication issue was discovered in Dahua DH-IPC-HDBW23A0RN-ZS, DH-IPC-HDBW13A0SN, DH-IPC-HDW1XXX, DH-IPC-HDW2XXX, DH-IPC-HDW4XXX, DH-IPC-HFW1XXX, DH-IPC-HFW2XXX, DH-IPC-HFW4XXX, DH-SD6CXX, DH-NVR1XXX, DH-HCVR4XXX, DH-HCVR5XXX, DHI-HCVR51A04HE-S3, DHI-HCVR51A08HE-S3, and DHI-HCVR58A32S-S2 devices. The use of password hash instead of password for authentication vulnerability was identified, which could allow a malicious user to bypass authentication without obtaining the actual password.Show less
1Dahuasecurity
15Dh Hcvr4xxx Firmware
Dh Hcvr5xxx FirmwareDh Ipc Hdbw13a0sn Firmware+12 more
May 13, 2026
May 6, 2017
N/A· v4
9.8 CRITICAL· v3
5.0 MEDIUM· v2
A Password in Configuration File issue was discovered in Dahua DH-IPC-HDBW23A0RN-ZS, DH-IPC-HDBW13A0SN, DH-IPC-HDW1XXX, DH-IPC-HDW2XXX, DH-IPC-HDW4XXX, DH-IPC-HFW1XXX, DH-IPC-HFW2XXX, DH-IPC-HFW4XXX, DH-SD6CXX, DH-NVR1XX...Show more
A Password in Configuration File issue was discovered in Dahua DH-IPC-HDBW23A0RN-ZS, DH-IPC-HDBW13A0SN, DH-IPC-HDW1XXX, DH-IPC-HDW2XXX, DH-IPC-HDW4XXX, DH-IPC-HFW1XXX, DH-IPC-HFW2XXX, DH-IPC-HFW4XXX, DH-SD6CXX, DH-NVR1XXX, DH-HCVR4XXX, DH-HCVR5XXX, DHI-HCVR51A04HE-S3, DHI-HCVR51A08HE-S3, and DHI-HCVR58A32S-S2 devices. The password in configuration file vulnerability was identified, which could lead to a malicious user assuming the identity of a privileged user and gaining access to sensitive information.Show less
1Dahuasecurity
1Ip Camera Firmware
May 13, 2026
Mar 30, 2017
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
Dahua IP Camera devices 3.200.0001.6 can be exploited via these steps: 1. Use the default low-privilege credentials to list all users via a request to a certain URI. 2. Login to the IP camera with admin credentials so as...Show more
Dahua IP Camera devices 3.200.0001.6 can be exploited via these steps: 1. Use the default low-privilege credentials to list all users via a request to a certain URI. 2. Login to the IP camera with admin credentials so as to obtain full control of the target IP camera. During exploitation, the first JSON object encountered has a "Component error: login challenge!" message. The second JSON object encountered has a result indicating a successful admin login.Show less
1Dahuasecurity
1Nvr Firmware
May 13, 2026
Mar 9, 2017
N/A· v4
8.1 HIGH· v3
9.3 HIGH· v2
An issue was discovered on Dahua DHI-HCVR7216A-S3 3.210.0001.10 build 2016-06-06 devices. The Dahua DVR Protocol, which operates on TCP Port 37777, is an unencrypted, binary protocol. Performing a Man-in-the-Middle attac...Show more
An issue was discovered on Dahua DHI-HCVR7216A-S3 3.210.0001.10 build 2016-06-06 devices. The Dahua DVR Protocol, which operates on TCP Port 37777, is an unencrypted, binary protocol. Performing a Man-in-the-Middle attack allows both sniffing and injections of packets, which allows creation of fully privileged new users, in addition to capture of sensitive information.Show less
1Dahuasecurity
3Camera Firmware
Nvr FirmwareSmartpss Firmware
May 13, 2026
Feb 27, 2017
N/A· v4
8.1 HIGH· v3
9.3 HIGH· v2
The web interface on Dahua DHI-HCVR7216A-S3 devices with NVR Firmware 3.210.0001.10 2016-06-06, Camera Firmware 2.400.0000.28.R 2016-03-29, and SmartPSS Software 1.16.1 2017-01-19 allows remote attackers to obtain login...Show more
The web interface on Dahua DHI-HCVR7216A-S3 devices with NVR Firmware 3.210.0001.10 2016-06-06, Camera Firmware 2.400.0000.28.R 2016-03-29, and SmartPSS Software 1.16.1 2017-01-19 allows remote attackers to obtain login access by leveraging knowledge of the MD5 Admin Hash without knowledge of the corresponding password, a different vulnerability than CVE-2013-6117.Show less
1Dahuasecurity
3Camera Firmware
Nvr FirmwareSmartpss Firmware
May 13, 2026
Feb 27, 2017
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
An issue was discovered on Dahua DHI-HCVR7216A-S3 devices with NVR Firmware 3.210.0001.10 2016-06-06, Camera Firmware 2.400.0000.28.R 2016-03-29, and SmartPSS Software 1.16.1 2017-01-19. When SmartPSS Software is launche...Show more
An issue was discovered on Dahua DHI-HCVR7216A-S3 devices with NVR Firmware 3.210.0001.10 2016-06-06, Camera Firmware 2.400.0000.28.R 2016-03-29, and SmartPSS Software 1.16.1 2017-01-19. When SmartPSS Software is launched, while on the login screen, the software in the background automatically logs in as admin. This allows sniffing sensitive information identified in CVE-2017-6341 without prior knowledge of the password. This is a different vulnerability than CVE-2013-6117.Show less
1Dahuasecurity
3Camera Firmware
Nvr FirmwareSmartpss Firmware
May 13, 2026
Feb 27, 2017
N/A· v4
5.9 MEDIUM· v3
4.3 MEDIUM· v2
Dahua DHI-HCVR7216A-S3 devices with NVR Firmware 3.210.0001.10 2016-06-06, Camera Firmware 2.400.0000.28.R 2016-03-29, and SmartPSS Software 1.16.1 2017-01-19 send cleartext passwords in response to requests from the Web...Show more
Dahua DHI-HCVR7216A-S3 devices with NVR Firmware 3.210.0001.10 2016-06-06, Camera Firmware 2.400.0000.28.R 2016-03-29, and SmartPSS Software 1.16.1 2017-01-19 send cleartext passwords in response to requests from the Web Page, Mobile Application, and Desktop Application interfaces, which allows remote attackers to obtain sensitive information by sniffing the network, a different vulnerability than CVE-2013-6117.Show less
1Dahuasecurity
1Dvr Firmware
May 6, 2026
Jul 11, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
Dahua DVR 2.608.0000.0 and 2.608.GV00.0 allows remote attackers to bypass authentication and obtain sensitive information including user credentials, change user passwords, clear log files, and perform other actions via...Show more
Dahua DVR 2.608.0000.0 and 2.608.GV00.0 allows remote attackers to bypass authentication and obtain sensitive information including user credentials, change user passwords, clear log files, and perform other actions via a request to TCP port 37777.Show less
1Dahuasecurity
65Dvr0404hd A
Dvr0404hd LDvr0404hd S+62 more
Apr 29, 2026
Sep 17, 2013
N/A· v4
N/A· v3
10.0 HIGH· v2
The authorization implementation on Dahua DVR appliances accepts a hash string representing the current date for the role of a master password, which makes it easier for remote attackers to obtain administrative access a...Show more
The authorization implementation on Dahua DVR appliances accepts a hash string representing the current date for the role of a master password, which makes it easier for remote attackers to obtain administrative access and change the administrator password via requests involving (1) ActiveX, (2) a standalone client, or (3) unspecified other vectors, a different vulnerability than CVE-2013-3612.Show less
1Dahuasecurity
65Dvr0404hd A
Dvr0404hd LDvr0404hd S+62 more
Apr 29, 2026
Sep 17, 2013
N/A· v4
N/A· v3
7.8 HIGH· v2
Dahua DVR appliances use a password-hash algorithm with a short hash length, which makes it easier for context-dependent attackers to discover cleartext passwords via a brute-force attack.
1Dahuasecurity
65Dvr0404hd A
Dvr0404hd LDvr0404hd S+62 more
Apr 29, 2026
Sep 17, 2013
N/A· v4
N/A· v3
9.3 HIGH· v2
Dahua DVR appliances have a small value for the maximum password length, which makes it easier for remote attackers to obtain access via a brute-force attack.
1Dahuasecurity
65Dvr0404hd A
Dvr0404hd LDvr0404hd S+62 more
Apr 29, 2026
Sep 17, 2013
N/A· v4
N/A· v3
7.8 HIGH· v2
Dahua DVR appliances do not properly restrict UPnP requests, which makes it easier for remote attackers to obtain access via vectors involving a replay attack against the TELNET port.
1Dahuasecurity
65Dvr0404hd A
Dvr0404hd LDvr0404hd S+62 more
Apr 29, 2026
Sep 17, 2013
N/A· v4
N/A· v3
10.0 HIGH· v2
Dahua DVR appliances have a hardcoded password for (1) the root account and (2) an unspecified "backdoor" account, which makes it easier for remote attackers to obtain administrative access via authorization requests inv...Show more
Dahua DVR appliances have a hardcoded password for (1) the root account and (2) an unspecified "backdoor" account, which makes it easier for remote attackers to obtain administrative access via authorization requests involving (a) ActiveX, (b) a standalone client, or (c) unknown other vectors.Show less