Man-in-the-Middle Vulnerability in Dahua DVR Devices
CVE-2017-6432
8.1HIGH
What is CVE-2017-6432?
A vulnerability exists in the Dahua DHI-HCVR7216A-S3 device due to the use of an unencrypted binary protocol on TCP Port 37777. This flaw enables attackers to execute Man-in-the-Middle attacks, making it possible to sniff and inject packets. As a result, malicious actors can create privileged user accounts and capture sensitive information, leading to significant security risks.
