Security Advisory

CVE-2022-45432

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-12-27 00:00:00
Last updated 2025-04-14 13:08:12
Assigner dahua
State PUBLISHED

Description

Some Dahua software products have a vulnerability of unauthenticated search for devices. After bypassing the firewall access control policy, by sending a specific crafted packet to the vulnerable interface, an attacker could unauthenticated search for devices in range of IPs from remote DSS Server.