CVE-2019-9679: High severity dahua ipc-hdw1122 vulnerability
Some of Dahua's Debug functions do not have permission separation. Low-privileged users can use the Debug function after logging in. Affected products include: IPC-HDW1X2X,IPC-HFW1X2X,IPC-HDW2X2X,IPC-HFW2X2X,IPC-HDW4X2X,IPC-HFW4X2X,IPC-HDBW4X2X,IPC-HDW5X2X,IPC-HFW5X2X for versions which Build time is before August 18,2019.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2019-9679?
CVE-2019-9679 is a vulnerability in Dahua's Debug functions that allows low-privileged users to use the Debug function after logging in.
Which products are affected by CVE-2019-9679?
The affected products include IPC-HDW1X2X, IPC-HFW1X2X, IPC-HDW2X2X, IPC-HFW2X2X, IPC-HDW4X2X, IPC-HFW4X2X, IPC-HDBW4X2X, IPC-HDW5X2X, and IPC-HFW5X2X for versions up to and excluding 2019-08-18.
What is the severity of CVE-2019-9679?
The severity of CVE-2019-9679 is high with a CVSS score of 8.8.
How can I fix CVE-2019-9679?
To fix CVE-2019-9679, Dahua recommends updating the affected products to a version after 2019-08-18. Refer to the vendor's website for specific instructions.
Where can I find more information about CVE-2019-9679?
You can find more information about CVE-2019-9679 on the Dahua Security website at [insert link to reference page].