CVE-2021-33045
Known Exploited (CISA KEV)CRITICAL
9.8
CVSS Severity Score
Vulnerability Description
The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.
Affected Platforms (CPE)
💻
Dahuasecurity
Ipc Hum7xxx Firmware
< 2.820.0000000.5.r.210705💻
Dahuasecurity
Ipc Hx3xxx Firmware
< 2.800.0000000.29.r.210630💻
Dahuasecurity
Ipc Hx5xxx Firmware
< 2.820.0000000.5.r.210705💻
Dahuasecurity
Nvr 1xxx Firmware
< 4.001.0000005.1.r.210709💻
Dahuasecurity
Nvr 2xxx Firmware
< 4.001.0000000.1.r.210710💻
Dahuasecurity
Nvr 4xxx Firmware
< 4.001.0000005.1.r.210713💻
Dahuasecurity
Nvr 5xxx Firmware
< 4.001.0000000.0.r.210710💻
Dahuasecurity
Nvr 6xx Firmware
< 4.001.0000001.1.r.210716💻
Dahuasecurity
Vth 542xh Firmware
< 4.500.0000002.0.r.210715💻
Dahuasecurity
Vto 65xxx Firmware
< 4.300.0000004.0.r.210715💻
Dahuasecurity
Vto 75x95x Firmware
< 4.300.0000003.0.r.210714💻
Dahuasecurity
Xvr 4x04 Firmware
All versions💻
Dahuasecurity
Xvr 4x08 Firmware
< 4.001.0000001.1.r.210709💻
Dahuasecurity
Xvr 4x04 Firmware
< 4.001.0000001.1.r.210709💻
Dahuasecurity
Xvr 5x04 Firmware
< 4.001.0000003.1.r.210710💻
Dahuasecurity
Xvr 5x08 Firmware
< 4.001.0000003.1.r.210710💻
Dahuasecurity
Xvr 5x16 Firmware
< 4.001.0000003.1.r.210710💻
Dahuasecurity
Xvr 7x16 Firmware
< 4.001.0000003.1.r.210710💻
Dahuasecurity
