Server-Side Request Forgery Vulnerability in Dahua Software Products
CVE-2022-45429
7.5HIGH
What is CVE-2022-45429?
Certain Dahua software products are susceptible to a server-side request forgery (SSRF) vulnerability, enabling attackers to exploit internal resources. By carefully crafting URL requests, an attacker can gain unauthorized access to systems and potentially sensitive data within the network. This flaw underscores the importance of robust security measures and timely updates to safeguard against such exploitation.
Affected Version(s)
DSS Professional, DSS Express, DHI-DSS7016D-S2/DHI-DSS7016DR-S2, DHI-DSS4004-S2 V8.0.2, V8.0.4, V8.1
