CVE-2021-33046
Summary
| CVE | CVE-2021-33046 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-01-13 21:15:00 UTC |
| Updated | 2022-01-25 15:13:00 UTC |
| Description | Some Dahua products have access control vulnerability in the password reset process. Attackers can exploit this vulnerability through specific deployments to reset device passwords. |
Risk And Classification
Problem Types: CWE-287
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Dahuasecurity | Asc2204c | - | All | All | All |
| Operating System | Dahuasecurity | Asc2204c Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Hcvr7xxx | - | All | All | All |
| Operating System | Dahuasecurity | Hcvr7xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Hcvr8xxx | - | All | All | All |
| Operating System | Dahuasecurity | Hcvr8xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Ipc-hx1xxx | - | All | All | All |
| Operating System | Dahuasecurity | Ipc-hx1xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Ipc-hx2xxx | - | All | All | All |
| Operating System | Dahuasecurity | Ipc-hx2xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Ipc-hx3xxx | - | All | All | All |
| Operating System | Dahuasecurity | Ipc-hx3xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Ipc-hx5xxx | - | All | All | All |
| Operating System | Dahuasecurity | Ipc-hx5xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Ipc-hx543xxx | - | All | All | All |
| Operating System | Dahuasecurity | Ipc-hx543xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Nvr1xxx | - | All | All | All |
| Operating System | Dahuasecurity | Nvr1xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Nvr2xxx | - | All | All | All |
| Operating System | Dahuasecurity | Nvr2xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Nvr4xxx | - | All | All | All |
| Operating System | Dahuasecurity | Nvr4xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Nvr5xxx | - | All | All | All |
| Operating System | Dahuasecurity | Nvr5xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Sd1a1 | - | All | All | All |
| Operating System | Dahuasecurity | Sd1a1 Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Sd22 | - | All | All | All |
| Operating System | Dahuasecurity | Sd22 Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Sd49 | - | All | All | All |
| Operating System | Dahuasecurity | Sd49 Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Sd50 | - | All | All | All |
| Operating System | Dahuasecurity | Sd50 Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Sd52c | - | All | All | All |
| Operating System | Dahuasecurity | Sd52c Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Sd6al | - | All | All | All |
| Operating System | Dahuasecurity | Sd6al Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Tpc-bf1241 | - | All | All | All |
| Operating System | Dahuasecurity | Tpc-bf1241 Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Tpc-bf2221 | - | All | All | All |
| Operating System | Dahuasecurity | Tpc-bf2221 Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Tpc-bf5x01 | - | All | All | All |
| Operating System | Dahuasecurity | Tpc-bf5x01 Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Tpc-pt8x21x | - | All | All | All |
| Operating System | Dahuasecurity | Tpc-pt8x21x Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Tpc-sd2221 | - | All | All | All |
| Operating System | Dahuasecurity | Tpc-sd2221 Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Tpc-sd8x21 | - | All | All | All |
| Operating System | Dahuasecurity | Tpc-sd8x21 Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Vtox20xf | - | All | All | All |
| Operating System | Dahuasecurity | Vtox20xf Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Xvr4xxx | - | All | All | All |
| Operating System | Dahuasecurity | Xvr4xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Xvr5xxx | - | All | All | All |
| Operating System | Dahuasecurity | Xvr5xxx Firmware | All | All | All | All |
| Hardware | Dahuasecurity | Xvr7xxx | - | All | All | All |
| Operating System | Dahuasecurity | Xvr7xxx Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| support | CONFIRM | support.dahuatech.com | |
| Security Advisory - Access control vulnerability found in some Dahua products | CONFIRM | www.dahuasecurity.com | |
| Security Advisory - Identity authentication bypass vulnerability found in some Dahua products | MISC | www.dahuasecurity.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.