First published: Wed Jul 31 2024(Updated: )
A vulnerability has been found in Dahua products.After obtaining the administrator's username and password, the attacker can send a carefully crafted data packet to the interface with vulnerabilities, causing device initialization.
Credit: cybersecurity@dahuatech.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Dahuasecurity Nvr4104-4ks2/l Firmware | <4.003.0000000.1.r.240515 | |
Dahuasecurity NVR4104-4KS2/L | ||
All of | ||
Dahua Security NVR4108-4KS2/L Firmware | =4.003.0000000.1.r.240515 | |
Dahuasecurity Nvr4108-4ks2/l | ||
All of | ||
Dahua Security NVR4116-4KS2/L Firmware | <4.003.0000000.1.r.240515 | |
Dahua Security NVR4116-4KS2/L Firmware | ||
All of | ||
Dahuasecurity Nvr4104-p-4ks2/l Firmware | <4.003.0000000.1.r.240515 | |
Dahua Security NVR4104-P-4KS2/L | ||
All of | ||
Dahuasecurity NVR4108-P-4KS2/L Firmware | <4.003.0000000.1.r.240515 | |
Dahuasecurity NVR4108-P-4KS2/L Firmware | ||
All of | ||
Dahuasecurity Nvr4108-8p-4ks2/l Firmware | <4.003.0000000.1.r.240515 | |
Dahuasecurity Nvr4108-8p-4ks2/l | ||
All of | ||
Dahuasecurity Nvr4116-8p-4ks2/l Firmware | <4.003.0000000.1.r.240515 | |
Dahua Security NVR4116-8P-4KS2/L | ||
All of | ||
Dahuasecurity Nvr4104hs-4ks2/l Firmware | <4.003.0000000.1.r.240515 | |
Dahua Security NVR4104HS-4KS2/L | ||
All of | ||
Dahua Security NVR4108HS-4KS2/L Firmware | <4.003.0000000.1.r.240515 | |
Dahuasecurity Nvr4108hs-4ks2/l | ||
All of | ||
Dahua Security NVR4104HS-P-4KS2/L Firmware | <4.003.0000000.1.r.240515 | |
Dahua Security NVR4104HS-P-4KS2/L | ||
All of | ||
Dahuasecurity Nvr4108hs-p-4ks2/l Firmware | <4.003.0000000.1.r.240515 | |
Dahua NVR4108HS-P-4KS2/L | ||
All of | ||
Dahuasecurity NVR4108HS-8P-4KS2/L Firmware | <4.003.0000000.1.r.240515 | |
Dahuasecurity Nvr4108hs-8p-4ks2/l | ||
All of | ||
Dahua Technology NVR4116HS-8P-4KS2/L Firmware | <4.003.0000000.1.r.240515 | |
Dahuasecurity NVR4116HS-8P-4KS2/L | ||
All of | ||
Dahuasecurity NVR4204-4KS2/L Firmware | <4.003.0000000.1.r.240515 | |
Dahuasecurity NVR4204-4KS2/L | ||
All of | ||
Dahuasecurity Nvr4208-4ks2/l Firmware | <4.003.0000000.1.r.240515 | |
Dahua Security NVR4208-4KS2/L | ||
All of | ||
Dahua Security NVR4216-4KS2/L Firmware | <4.003.0000000.1.r.240515 | |
Dahua NVR4216-4KS2/L | ||
All of | ||
Dahuasecurity Nvr4204-p-4ks2/l Firmware | <4.003.0000000.1.r.240515 | |
Dahuasecurity NVR4204-P-4KS2/L | ||
All of | ||
Dahuasecurity Nvr4208-8p-4ks2/l Firmware | <4.003.0000000.1.r.240515 | |
Dahua Security NVR4208-8P-4KS2/L | ||
All of | ||
Dahuasecurity NVR4216-16P-4KS2/L Firmware | <4.003.0000000.1.r.240515 | |
Dahua Security NVR4216-16P-4KS2/L | ||
All of | ||
Dahuasecurity Nvr4232-4ks2/l Firmware | <4.003.0000000.1.r.240515 | |
Dahuasecurity NVR4232-4KS2/L | ||
All of | ||
Dahua Security NVR4232-16P-4KS2/L Firmware | <4.003.0000000.1.r.240515 | |
Dahuasecurity NVR4232-16P-4KS2/L | ||
All of | ||
Dahuasecurity Nvr4116hs-4ks2/l Firmware | <4.003.0000000.1.r.240515 | |
Dahua Security NVR4116HS-4KS2/L | ||
All of | ||
Dahuasecurity NVR4416-4KS2/i Firmware | <4.001.0000001.6.r.240725 | |
Dahua NVR4416-4KS2/i | ||
All of | ||
Dahuasecurity NVR4416-16P-4KS2/i Firmware | <4.001.0000001.6.r.240725 | |
Dahua NVR4416-16P-4KS2/i | ||
All of | ||
Dahuasecurity Nvr4432-16p-4ks2/i Firmware | <4.001.0000001.6.r.240725 | |
Dahua Security NVR4432-16P-4KS2/i | ||
All of | ||
Dahuasecurity Nvr4816-4ks2/i Firmware | <4.001.0000001.6.r.240725 | |
Dahuasecurity Nvr4816-4ks2/i | ||
All of | ||
Dahuasecurity Nvr4816-16p-4ks2/i Firmware | <4.001.0000001.6.r.240725 | |
Dahuasecurity Nvr4816-16p-4ks2/i | ||
All of | ||
Dahuasecurity Nvr4832-4ks2/i Firmware | <4.001.0000001.6.r.240725 | |
Dahuasecurity Nvr4832-4ks2/i | ||
All of | ||
Dahuasecurity NVR4832-16P-4KS2/I Firmware | <4.001.0000001.6.r.240725 | |
Dahua NVR4832-16P-4KS2/I | ||
All of | ||
Dahua NVR4432-4KS2/I Firmware | <4.001.0000001.6.r.240725 | |
Dahuasecurity NVR4432-4KS2/i | ||
All of | ||
Dahuasecurity NVR4232-16P-4KS3 Firmware | <4.003.0000000.0.r.240312 | |
Dahuasecurity Nvr4232-4ks3 Firmware | ||
All of | ||
Dahuasecurity Nvr4232-16p-4ks3 | <4.003.0000000.0.r.240312 | |
Dahuasecurity NVR4232-16P-4KS3 Firmware | ||
All of | ||
Dahua Security NVR4216-4KS3 | <4.003.0000000.0.r.240312 | |
Dahua Security NVR4216-4KS3 | ||
All of | ||
Dahuasecurity NVR4216-16P-4KS3 | <4.003.0000000.0.r.240312 | |
Dahuasecurity NVR4216-16P-4KS3 Firmware | ||
All of | ||
Dahuasecurity Nvr4208-8p-4ks3 Firmware | <4.003.0000000.0.r.240312 | |
Dahua Security NVR4208-8P-4KS3 | ||
All of | ||
Dahuasecurity Nvr4208-4ks3 Firmware | <4.003.0000000.0.r.240312 | |
Dahua Security NVR4208-4KS3 | ||
All of | ||
Dahua NVR4204-P-4KS3 Firmware | <4.003.0000000.0.r.240312 | |
Dahua NVR4204-P-4KS3 Firmware | ||
All of | ||
Dahuasecurity Nvr4204-4ks3 Firmware | <4.003.0000000.0.r.240312 | |
Dahua Security NVR4204-4KS3 | ||
All of | ||
Dahua Security NVR4116HS-8P-4KS3 | <4.003.0000000.0.r.240312 | |
Dahua Security NVR4116HS-8P-4KS3 | ||
All of | ||
Dahua Security NVR4116HS-4KS3 | <4.003.0000000.0.r.240312 | |
Dahua Security NVR4116HS-4KS3 | ||
All of | ||
Dahuasecurity Nvr4108hs-p-4ks3 Firmware | <4.003.0000000.0.r.240312 | |
Dahuasecurity Nvr4108hs-p-4ks3 Firmware | ||
All of | ||
Dahuasecurity Nvr4108hs-8p-4ks3 Firmware | <4.003.0000000.0.r.240312 | |
Dahuasecurity Nvr4108hs-8p-4ks3 Firmware | ||
All of | ||
Dahuasecurity Nvr4108hs-4ks3(960g) Firmware | <4.003.0000000.0.r.240312 | |
Dahua NVR4108HS-4KS3(960G) | ||
All of | ||
Dahua Security NVR4104HS-P-4KS3 (960G) | <4.003.0000000.0.r.240312 | |
Dahua Security NVR4104HS-P-4KS3 | ||
All of | ||
Dahuasecurity Nvr4104hs-4ks3(960g) Firmware | <4.003.0000000.0.r.240312 | |
Dahuasecurity NVR4104HS-4KS3 (960G) | ||
All of | ||
Dahuasecurity Nvr4116-8p-4ks3 | <4.003.0000000.0.r.240312 | |
Dahuasecurity Nvr4116-8p-4ks3 Firmware | ||
All of | ||
Dahuasecurity NVR4116HS-4KS3 Firmware | <4.003.0000000.0.r.240312 | |
Dahuasecurity Nvr4116-4ks3 Firmware | ||
All of | ||
Dahuasecurity Nvr4108-p-4ks3 Firmware | <4.003.0000000.0.r.240312 | |
Dahuasecurity Nvr4108-p-4ks3 Firmware | ||
All of | ||
Dahuasecurity Nvr4104-4ks3 | <4.003.0000000.0.r.240312 | |
Dahuasecurity NVR4104HS-4KS3 (960G) | ||
All of | ||
Dahuasecurity Nvr4108-8p-4ks3 | <4.003.0000000.0.r.240312 | |
Dahuasecurity Nvr4108-8p-4ks3 Firmware | ||
All of | ||
Dahua Technology NVR4108-4KS3 Firmware | <4.003.0000000.0.r.240312 | |
Dahua Technology NVR4108-4KS3 Firmware | ||
All of | ||
Dahuasecurity Nvr4104-p-4ks3 Firmware | <4.003.0000000.0.r.240312 | |
Dahuasecurity Nvr4104-p-4ks3 Firmware | ||
All of | ||
Dahuasecurity Nvr4104hs-p-4ks3(960g) Firmware | <4.003.0000000.0.r.240312 | |
Dahua Security NVR4104HS-P-4KS3 (960G) | ||
All of | ||
Dahuasecurity Nvr4104hs-4ks3(960g) Firmware | <4.003.0000000.0.r.240312 | |
Dahuasecurity NVR4104HS-4KS3 (960G) | ||
All of | ||
Dahuasecurity Nvr4108hs-4ks3(960g) Firmware | <4.003.0000000.0.r.240312 | |
Dahua NVR4108HS-4KS3(960G) | ||
All of | ||
Dahuasecurity Nvr4104-p-4ks3 Firmware | <4.003.0000000.0.r.240312 | |
Dahua Security NVR4104-P-4KS3 (960G) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-39946 is assessed as high due to the potential for device initialization following unauthorized access.
To fix CVE-2024-39946, change the default administrator credentials and apply security patches provided by Dahua.
Products affected by CVE-2024-39946 include various models of Dahua NVRs, specifically those with firmware versions prior to 4.003.0000000.1.r.240515.
If exploited, an attacker can send crafted data packets to the device, potentially causing it to reset or malfunction.
To determine if your Dahua device is vulnerable to CVE-2024-39946, check the firmware version against those listed as affected.