Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-26qr-26wf-xv6x

Опубликовано: 18 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 2.4

Описание

A vulnerability found in Dahua NVR/XVR device. A third-party malicious attacker with physical access to the device may gain access to a restricted shell via the serial port, and bypasses the shell's authentication mechanism to escalate privileges.

A vulnerability found in Dahua NVR/XVR device. A third-party malicious attacker with physical access to the device may gain access to a restricted shell via the serial port, and bypasses the shell's authentication mechanism to escalate privileges.

EPSS

Процентиль: 8%
0.00028
Низкий

2.4 Low

CVSS4

Дефекты

CWE-305

Связанные уязвимости

nvd
14 дней назад

A vulnerability found in Dahua NVR/XVR device. A third-party malicious attacker with physical access to the device may gain access to a restricted shell via the serial port, and bypasses the shell's authentication mechanism to escalate privileges.

EPSS

Процентиль: 8%
0.00028
Низкий

2.4 Low

CVSS4

Дефекты

CWE-305