9.8
CVE-2024-39950
- EPSS 0.26%
- Veröffentlicht 31.07.2024 04:15:05
- Zuletzt bearbeitet 30.09.2025 11:37:36
- Quelle cybersecurity@dahuatech.com
- CVE-Watchlists
- Unerledigt
A vulnerability has been found in Dahua products. Attackers can send carefully crafted data packets to the interface with vulnerabilities to initiate device initialization.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dahuasecurity ≫ Nvr4232-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4232-16p-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4216-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4216-16p-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4208-8p-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4208-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4204-p-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4204-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4116hs-8p-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4116hs-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4108hs-p-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4108hs-8p-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4108hs-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4104hs-p-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4104hs-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4116-8p-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4116-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4108-p-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4104-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4108-8p-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4108-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Nvr4104-p-4ks3 Firmware Version < 4.003.0000000.0.r.240312
Dahuasecurity ≫ Ipc-hfs8849g-z3-led Firmware Version < 3.140.0000000.30.r.240725
Dahuasecurity ≫ Ipc-hfs8449g-z7-led Firmware Version < 3.140.0000000.30.r.240725
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.26% | 0.489 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| cybersecurity@dahuatech.com | 8.6 | 3.9 | 4.7 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
|
CWE-121 Stack-based Buffer Overflow
A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.