Some Dahua software products have a vulnerability of unauthenticated un-throttled ICMP requests on remote DSS Server. After bypassing the firewall access control policy, by sending a specific crafted packet to the vulnerable interface, an attacker could exploit the victim server to launch ICMP request attack to the designated target host.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Dhi-dss7016d-s2_firmware | Dahuasecurity | 1.001.0000001.2 (including) | 1.001.0000001.2 (including) |
Dhi-dss7016d-s2_firmware | Dahuasecurity | 8.0.2 (including) | 8.0.2 (including) |
Dhi-dss7016d-s2_firmware | Dahuasecurity | 8.0.4 (including) | 8.0.4 (including) |
Dhi-dss7016d-s2_firmware | Dahuasecurity | 8.1 (including) | 8.1 (including) |