CVE-2013-3612

Dahua DVR appliances have a hardcoded password for (1) the root account and (2) an unspecified "backdoor" account, which makes it easier for remote attackers to obtain administrative access via authorization requests involving (a) ActiveX, (b) a standalone client, or (c) unknown other vectors.
References
Link Resource
http://www.kb.cert.org/vuls/id/800094 US Government Resource
Configurations

Configuration 1 (hide)

OR cpe:2.3:h:dahuasecurity:dvr0404hd-a:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0404hd-l:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0404hd-s:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0404hd-u:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0404hf-a-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0404hf-al-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0404hf-s-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0404hf-u-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0804:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0804hd-l:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0804hd-s:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0804hf-a-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0804hf-al-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0804hf-l-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0804hf-s-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr0804hf-u-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr1604hd-l:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr1604hd-s:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr1604hf-a-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr1604hf-al-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr1604hf-l-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr1604hf-s-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr1604hf-u-e:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2104c:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2104h:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2104hc:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2104he:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2108c:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2108h:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2108hc:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2108he:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2116c:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2116h:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2116hc:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2116he:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2404hf-s:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2404lf-al:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr2404lf-s:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr3204hf-s:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr3204lf-al:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr3204lf-s:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr3224l:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr3232l:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5104c:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5104h:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5104he:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5108c:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5108h:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5108he:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5116c:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5116h:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5116he:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5204a:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5204l:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5208a:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5208l:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5216a:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5216l:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5404:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5408:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5416:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5804:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5808:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr5816:-:*:*:*:*:*:*:*
cpe:2.3:h:dahuasecurity:dvr6404lf-s:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2013-09-17 12:04

Updated : 2023-12-10 11:16


NVD link : CVE-2013-3612

Mitre link : CVE-2013-3612

CVE.ORG link : CVE-2013-3612


JSON object : View

Products Affected

dahuasecurity

  • dvr5204l
  • dvr3204lf-s
  • dvr5108he
  • dvr0404hf-u-e
  • dvr1604hd-s
  • dvr5216a
  • dvr2404lf-s
  • dvr5216l
  • dvr2108hc
  • dvr0804hd-s
  • dvr0804
  • dvr2404hf-s
  • dvr2104c
  • dvr0404hf-a-e
  • dvr5108c
  • dvr0404hd-l
  • dvr1604hf-al-e
  • dvr5208a
  • dvr0804hf-s-e
  • dvr2104he
  • dvr5408
  • dvr5804
  • dvr0804hf-a-e
  • dvr1604hd-l
  • dvr1604hf-a-e
  • dvr0804hd-l
  • dvr0404hf-al-e
  • dvr2116he
  • dvr5104he
  • dvr3204hf-s
  • dvr3232l
  • dvr2108he
  • dvr2116h
  • dvr5404
  • dvr5816
  • dvr0404hd-u
  • dvr3204lf-al
  • dvr0804hf-l-e
  • dvr0804hf-u-e
  • dvr1604hf-s-e
  • dvr2404lf-al
  • dvr5108h
  • dvr1604hf-l-e
  • dvr2108h
  • dvr5104h
  • dvr0404hd-a
  • dvr1604hf-u-e
  • dvr3224l
  • dvr0404hd-s
  • dvr2104hc
  • dvr5116he
  • dvr2116hc
  • dvr5808
  • dvr0804hf-al-e
  • dvr2116c
  • dvr5116c
  • dvr0404hf-s-e
  • dvr5116h
  • dvr2108c
  • dvr5104c
  • dvr5204a
  • dvr2104h
  • dvr5416
  • dvr5208l
  • dvr6404lf-s
CWE
CWE-255

Credentials Management Errors