Buffer Overflow Vulnerability in Dahua Products
CVE-2019-9677
9.8CRITICAL
What is CVE-2019-9677?
A vulnerability in the CGI interface of Dahua products allows attackers to exploit specific fields that are not properly validated. By crafting malicious packets, an attacker can trigger a buffer overflow, potentially leading to unauthorized access or a complete system compromise. This vulnerability affects various Dahua CCTV camera models with firmware built before August 18, 2019, emphasizing the need for software updates to mitigate associated risks.
Affected Version(s)
IPC-HDW1X2X,IPC-HFW1X2X,IPC-HDW2X2X,IPC-HFW2X2X,IPC-HDW4X2X,IPC-HFW4X2X,IPC-HDBW4X2X,IPC-HDW5X2X,IPC-HFW5X2X Versions which Build time before August 18 2019