Unrated severityCISA KEVNVD Advisory· Published Sep 15, 2021· Updated Jan 12, 2026
CVE-2021-33045
CVE-2021-33045
Description
The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.
Affected products
1- Range: Dahua IP Camera devices IPC-HX3XXX, IPC-HX5XXX, and IPC-HUM7XXX Buildtime before May, 2020, Video Intercom devices VTO75X95X, VTO65XXX, and VTH542XH, NVR devices NVR1XXX, NVR2XXX, NVR5XXX, and NVR6XX, XVR devices XVR4xxx, XVR5xxx, and XVR7xxx Buildtime before December, 2019.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- packetstormsecurity.com/files/164423/Dahua-Authentication-Bypass.htmlmitrex_refsource_MISC
- seclists.org/fulldisclosure/2021/Oct/13mitremailing-listx_refsource_FULLDISC
- www.dahuasecurity.com/support/cybersecurity/details/957mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.