ZeroHour

CVE-2017-9317

CVSS 3.0
8.8 high
EPSS
<1%p60
Published
()
Modified
Description

Privilege escalation vulnerability found in some Dahua IP devices. Attacker in possession of low privilege account can gain access to credential information of high privilege account and further obtain device information or attack the device.

Vendors
dahuasecurity
Products
xvr5x16 firmware, xvr5x08 firmware, xvr5x04 firmware, xvr7x16 firmware, ipc-hdbw4xxx firmware, ipc-hdbw5xxx firmware
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.