CVE-2022-45432

Publication date

2022-12-27 00:00:00

Family

dahua

State

PUBLISHED

Description

Some Dahua software products have a vulnerability of unauthenticated search for devices. After bypassing the firewall access control policy, by sending a specific crafted packet to the vulnerable interface, an attacker could unauthenticated search for devices in range of IPs from remote DSS Server.