First published: Fri Jul 11 2014(Updated: )
Dahua DVR 2.608.0000.0 and 2.608.GV00.0 allows remote attackers to bypass authentication and obtain sensitive information including user credentials, change user passwords, clear log files, and perform other actions via a request to TCP port 37777.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dahuasecurity Dvr Firmware | =2.608.0000.0 | |
Dahuasecurity Dvr Firmware | =2.608.gv00.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2013-6117 is considered high due to its authentication bypass nature and potential for sensitive information exposure.
To fix CVE-2013-6117, you should upgrade your Dahua DVR firmware to the latest version provided by the manufacturer.
Through CVE-2013-6117, attackers can access user credentials, change user passwords, and clear log files.
CVE-2013-6117 affects Dahua DVR firmware versions 2.608.0000.0 and 2.608.GV00.0.
Yes, CVE-2013-6117 can be exploited remotely, making it a relatively easy vulnerability for attackers to leverage.