Dahuasecurity
Dahuasecurity Ipc-hfw2231t-as-s2 Firmware: vulnerabilities and CVEs
Dahuasecurity Ipc-hfw2231t-as-s2 Firmware has 4 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs4
Last 12 months0
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-30563 | High (7.4) | 0.98% | — | Jun 28, 2022 | When an attacker uses a man-in-the-middle attack to sniff the request packets with success logging in through ONVIF, he can log in to the device by replaying the user's login packet. |
| CVE-2022-30562 | Medium (4.7) | 0.71% | — | Jun 28, 2022 | If the user enables the https function on the device, an attacker can modify the user’s request data packet through a man-in-the-middle attack ,Injection of a malicious URL in the Host: header of the HTTP Request… |
| CVE-2022-30561 | Medium (5.9) | 0.76% | — | Jun 28, 2022 | When an attacker uses a man-in-the-middle attack to sniff the request packets with success logging in, the attacker could log in to the device by replaying the user's login packet. |
| CVE-2022-30560 | High (7.4) | 0.85% | — | Jun 28, 2022 | When an attacker obtaining the administrative account and password, or through a man-in-the-middle attack, the attacker could send a specified crafted packet to the vulnerable interface then lead the device to crash. |
Other products by Dahuasecurity
Dhi-dss7016dr-s2 Firmware · 12Dhi-dss4004-s2 Firmware · 12DSS Professional · 12Dhi-dss7016d-s2 Firmware · 12DSS Express · 12Nvr4816-16p-4ks2/i Firmware · 8Nvr4432-4ks2/i Firmware · 8Nvr4816-4ks2/i Firmware · 8Nvr4416-4ks2/i Firmware · 8Nvr4416-16p-4ks2/i Firmware · 8Nvr4432-16p-4ks2/i Firmware · 8Nvr4832-16p-4ks2/i Firmware · 8