Vulnerability Details CVE-2021-33044
The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.943
EPSS Ranking 99.9%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Proposed Action
Dahua IP cameras and related products contain an authentication bypass vulnerability when the NetKeyboard type argument is specified by the client during authentication.
Ransomware Campaign
Unknown
Products affected by CVE-2021-33044
-
cpe:2.3:h:dahuasecurity:ipc-hum7xxx:-
-
cpe:2.3:h:dahuasecurity:ipc-hx3xxx:-
-
cpe:2.3:h:dahuasecurity:ipc-hx5xxx:-
-
cpe:2.3:h:dahuasecurity:sd1a1:-
-
cpe:2.3:h:dahuasecurity:sd22:-
-
cpe:2.3:h:dahuasecurity:sd41:-
-
cpe:2.3:h:dahuasecurity:sd50:-
-
cpe:2.3:h:dahuasecurity:sd52c:-
-
cpe:2.3:h:dahuasecurity:sd6al:-
-
cpe:2.3:h:dahuasecurity:tpc-bf1241:-
-
cpe:2.3:h:dahuasecurity:tpc-bf2221:-
-
cpe:2.3:h:dahuasecurity:tpc-bf5x01:-
-
cpe:2.3:h:dahuasecurity:tpc-bf5x21:-
-
cpe:2.3:h:dahuasecurity:tpc-pt8x21b:-
-
cpe:2.3:h:dahuasecurity:tpc-sd2221:-
-
cpe:2.3:h:dahuasecurity:tpc-sd8x21:-
-
cpe:2.3:h:dahuasecurity:vth-542xh:-
-
cpe:2.3:h:dahuasecurity:vto-65xxx:-
-
cpe:2.3:h:dahuasecurity:vto-75x95x:-
-
cpe:2.3:o:dahuasecurity:ipc-hum7xxx_firmware:*
-
cpe:2.3:o:dahuasecurity:ipc-hx3xxx_firmware:*
-
cpe:2.3:o:dahuasecurity:ipc-hx5xxx_firmware:*
-
cpe:2.3:o:dahuasecurity:sd1a1_firmware:*
-
cpe:2.3:o:dahuasecurity:sd22_firmware:*
-
cpe:2.3:o:dahuasecurity:sd41_firmware:*
-
cpe:2.3:o:dahuasecurity:sd50_firmware:*
-
cpe:2.3:o:dahuasecurity:sd52c_firmware:*
-
cpe:2.3:o:dahuasecurity:sd6al_firmware:*
-
cpe:2.3:o:dahuasecurity:tpc-bf1241_firmware:*
-
cpe:2.3:o:dahuasecurity:tpc-bf2221_firmware:*
-
cpe:2.3:o:dahuasecurity:tpc-bf5x01_firmware:*
-
cpe:2.3:o:dahuasecurity:tpc-bf5x21_firmware:*
-
cpe:2.3:o:dahuasecurity:tpc-pt8x21b_firmware:*
-
cpe:2.3:o:dahuasecurity:tpc-sd2221_firmware:*
-
cpe:2.3:o:dahuasecurity:tpc-sd8x21_firmware:*
-
cpe:2.3:o:dahuasecurity:vth-542xh_firmware:*
-
cpe:2.3:o:dahuasecurity:vto-65xxx_firmware:*
-
cpe:2.3:o:dahuasecurity:vto-75x95x_firmware:*