CVE-2021-33044

CRITICALCVSS 9.8/10Actively ExploitedEPSS 99.87%

Last modified

CVE-2021-33044 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.. CISA has confirmed active exploitation in the wild. EPSS estimates a 99.87% chance of exploitation in the next 30 days.

Description

The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.

Metrics

CVSS 3.1
9.8/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
99.87%

100.0th percentile

Probability of exploitation in the next 30 days. Learn more

Exploitation Status

This vulnerability is listed in CISA’s Known Exploited Vulnerabilities catalog, confirming active exploitation in the wild. Federal agencies must remediate by .

Weakness Enumeration

Affected Software

VendorProductVersions
DahuasecurityIpc-Hum7xxx Firmware< 2.820.0000000.5.r.210705
DahuasecurityIpc-Hx3xxx Firmware< 2.800.0000000.29.r.210630
DahuasecurityIpc-Hx5xxx Firmware< 2.820.0000000.18.r.210705
DahuasecuritySd1a1 Firmware< 2.812.0000007.0.r.210706
DahuasecuritySd22 Firmware< 2.812.0000007.0.r.210706
DahuasecuritySd49 Firmware< 2.812.0000007.0.r.210706
DahuasecuritySd50 Firmware< 2.812.0000007.0.r.210706
DahuasecuritySd52c Firmware< 2.812.0000007.0.r.210706
DahuasecuritySd6al Firmware< 2.812.0000007.0.r.210706
DahuasecurityTpc-Bf1241 Firmware< 2.630.0000000.6.r.210707
DahuasecurityTpc-Bf2221 Firmware< 2.630.0000000.10.r.210707
DahuasecurityTpc-Bf5x01 Firmware< 2.630.0000000.12.r.210707
DahuasecurityTpc-Pt8x21b Firmware< 2.630.0000000.10.r.210701
DahuasecurityTpc-Sd2221 Firmware<= 2.630.0000000.7.r.210707
DahuasecurityTpc-Sd8x21 Firmware< 2.630.0000000.9.r.210706
DahuasecurityVto-65xxx Firmware< 4.300.0000004.0.r.210715
DahuasecurityVto-75x95x Firmware< 4.300.0000003.0.r.210714
DahuasecurityVth-542xh Firmware< 4.500.0000002.0.r.210715
DahuasecurityTpc-Bf5x21 Firmware< 2.630.0000000.8.r.210630

References

Timeline

Published
Last Modified
Status
Analyzed

Frequently Asked Questions

What is CVE-2021-33044?
The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.
How severe is CVE-2021-33044?
CVE-2021-33044 has a CVSS score of 9.8/10 (CRITICAL severity). The EPSS model estimates a 99.87% probability of exploitation in the next 30 days. This vulnerability is listed in CISA's Known Exploited Vulnerabilities catalog.
How do I fix CVE-2021-33044?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2021-33044?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST