CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.3. It may be remotely exploitable.
CVE
CVE-2022-45432
Severity
MEDIUM
CVSS
5.3
EPSS
0.70%
Original NVD Description
Some Dahua software products have a vulnerability of unauthenticated search for devices. After bypassing the firewall access control policy, by sending a specific crafted packet to the vulnerable interface, an attacker could unauthenticated search for devices in range of IPs from remote DSS Server.
Related CVEs
Other vulnerabilities affecting the same vendor(s)