CVE-2022-30563
When an attacker uses a man-in-the-middle attack to sniff the request packets with success logging in through ONVIF, he can log in to the device by replaying the user's login packet.
- Affected products
- Dahua Asi7Xxx, Dahua Ipc-Hdbw2Xxx, Dahua Ipc-Hx2Xxx
- Dahuasecurity ipc-hdbw2431e-s-s2 Firmware
- < 2022-04
- CVSS 3.1
- 7.4 HIGH
- EPSS
- 0.9% (56th percentile)
- NVD status
- Modified
- Published
- 2022-06-28
CVE-2022-30563 at NVD
1 known exploit for CVE-2022-30563
Proof-of-concept code and exploit modules indexed by Sploitus