Some of Dahua's Debug functions do not have permission separation. Low-privileged users can use the Debug function after logging in. Affected products include: IPC-HDW1X2X,IPC-HFW1X2X,IPC-HDW2X2X,IPC-HFW2X2X,IPC-HDW4X2X,IPC-HFW4X2X,IPC-HDBW4X2X,IPC-HDW5X2X,IPC-HFW5X2X for versions which Build time is before August 18,2019.
References
Link | Resource |
---|---|
https://www.dahuasecurity.com/support/cybersecurity/details/637 | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: dahua
Published: 2019-09-18T18:32:15
Updated: 2019-09-18T18:32:15
Reserved: 2019-03-11T00:00:00
Link: CVE-2019-9679
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-09-18T19:15:11.533
Modified: 2019-09-19T16:08:30.727
Link: CVE-2019-9679
JSON object: View
Redhat Information
No data.
CWE