Unauthorized Access Vulnerability in Dahua IP Camera Devices
CVE-2017-7253
8.8HIGH
What is CVE-2017-7253?
Dahua IP Camera devices running version 3.200.0001.6 are susceptible to exploitation which allows malicious actors to gain unauthorized access. By utilizing default low-privilege credentials, an attacker can successfully enumerate all users through a specific URI request. Once they have this information, they can log in with admin credentials, thus obtaining complete control of the affected IP camera. This vulnerability poses a significant security risk, as it facilitates unauthorized surveillance and control over the device.
