CVE-2021-33045

The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.

  • Published Sep 15, 2021
  • CVSS 9.8 critical
  • 99.6% chance of exploitation in the next 30 days (EPSS)
  • In CISA's Known Exploited Vulnerabilities catalog
  • Public exploit code is available

Affected software

In the news

CVE-2021-33045 at the National Vulnerability Database