CVE-2019-9680: Medium severity dahua ipc-hdw1122 vulnerability
Some Dahua products have information leakage issues. Attackers can obtain the IP address and device model information of the device by constructing malicious data packets. Affected products include: IPC-HDW1X2X,IPC-HFW1X2X,IPC-HDW2X2X,IPC-HFW2X2X,IPC-HDW4X2X,IPC-HFW4X2X,IPC-HDBW4X2X,IPC-HDW5X2X,IPC-HFW5X2X for versions which Build time is before August 18, 2019.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2019-9680?
CVE-2019-9680 is a vulnerability found in some Dahua products that allows attackers to obtain the IP address and device model information of the device by constructing malicious data packets.
Which products are affected by CVE-2019-9680?
The affected products include IPC-HDW1X2X, IPC-HFW1X2X, IPC-HDW2X2X, IPC-HFW2X2X, IPC-HDW4X2X, IPC-HFW4X2X, IPC-HDBW4X2X, IPC-HDW5X2X, IPC-HFW5X2X.
How severe is CVE-2019-9680?
CVE-2019-9680 has a severity rating of 5.3, which is considered medium.
How can I fix CVE-2019-9680?
To fix CVE-2019-9680, update your Dahua products to a version equal to or later than 2019-08-18.
Where can I find more information about CVE-2019-9680?
You can find more information about CVE-2019-9680 on the Dahua Security website at https://www.dahuasecurity.com/support/cybersecurity/details/637.