CVE-2024-39945
—CVSS 3.1
4.9 medium
EPSS
<1%p38
Published
()
Modified
Description
A vulnerability has been found in Dahua products. After obtaining the administrator's username and password, the attacker can send a carefully crafted data packet to the interface with vulnerabilities, causing the device to crash.
- Vendors
- dahuasecurity
- Products
- nvr4104-4ks2\/l firmware, nvr4108-4ks2\/l firmware, nvr4116-4ks2\/l firmware, nvr4104-p-4ks2\/l firmware, nvr4108-p-4ks2\/l firmware, nvr4108-8p-4ks2\/l firmware, nvr4116-8p-4ks2\/l firmware, nvr4104hs-4ks2\/l firmware, nvr4108hs-4ks2\/l firmware, nvr4104hs-p-4ks2\/l firmware, nvr4108hs-p-4ks2\/l firmware, nvr4108hs-8p-4ks2\/l firmware
- Weakness
- CWE-703
- Vector
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
In the news0 stories
No ingested article mentions this CVE yet.