CVE-2022-30564
—CVSS 3.1
5.3 medium
EPSS
<1%p37
Published
()
Modified
Description
Some Dahua embedded products have a vulnerability of unauthorized modification of the device timestamp. By sending a specially crafted packet to the vulnerable interface, an attacker can modify the device system time.
- Vendors
- dahuasecurity
- Products
- ipc-hf71242f-z-x firmware, ipc-hf7442f-z-x firmware, ipc-hf7842f-z-x firmware, ipc-hf5241f-ze firmware, ipc-hf5442f-ze firmware, ipc-hf5541f-ze firmware, ipc-hf5842f-ze firmware, sd5a225gb-hnr firmware, sd5a225gb-hnr-sl firmware, sd5a225xa-hnr firmware, sd5a225xa-hnr-sl firmware, sd5a232gb-hnr firmware
- Weakness
- CWE-284
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.