PT-2019-19791 · Dahua · Dahua

Published

2019-09-18

·

Updated

2019-09-19

·

CVE-2019-9677

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dahua products versions prior to August 18, 2019
Description The issue concerns a buffer overflow that can be triggered by an attacker constructing malicious packets due to insufficient verification of specific fields in the CGI interface of certain Dahua products.
Recommendations For versions prior to August 18, 2019, update the firmware to a version released after August 18, 2019, to resolve the issue.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-9677

Affected Products

Dahua