Sploitus

Exploit for CVE-2024-13985

kitploit · 2026-09-02

Exploit Code

MARKDOWN11 lines
## https://sploitus.com/exploit?id=KITPLOIT:TOOLS-GITHUB-CRIMSONFIEDOFFICIAL-CVE-2024-13985
# CVE-2024-13985 — Удалённое выполнение кода в Dahua EIMS `capture_handle.action`

![CVSS 4.0](https://img.shields.io/badge/CVSS_4.0-10.0_CRITICAL-critical?style=flat-square) ![Remotely Exploitable](https://img.shields.io/badge/Remotely_Exploitable-Yes-critical?style=flat-square) ![Authentication](https://img.shields.io/badge/Authentication-Not_Required-critical?style=flat-square) ![In the Wild](https://img.shields.io/badge/Exploitation-Observed-critical?style=flat-square)

> **Тип рекомендации:** cкоординированное с вендором раскрытие уязвимости · **Сообщается о реальной эксплуатации**  
>  **ID CVE:** CVE-2024-13985  
>  **ID CNVD:** CNVD-2024-17054  
>  **Вендор:** Zhejiang Dahua Technology Co., Ltd.  
>  **Продукт:** EIMS (Enterprise Information Management System)  
>  **Опубликовано:** 2025-08-27T21:23:37 UTC 2026-05-15T11:14:33 UTC