Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
If the user enables the https function on the device, an attacker can modify the user’s request data packet through a man-in-the-middle attack ,Injection of a malicious URL in the Host: header of the HTTP Request results in a 302 redirect to an attacker-controlled page.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
多款Dahua产品输入验证错误漏洞
Vulnerability Description
Dahua IPC-HFW2XXX等都是中国大华(Dahua)公司的产品。Dahua IPC-HFW2XXX是一款IP摄像机。Dahua IPC-HDBW2XXX是一系列摄像头。Dahua ASI7XXXX是一系列人脸识别门禁控制器。 Dahua 多款产品存在安全漏洞,攻击者利用该漏洞可在HTTP请求头中注入恶意URL导致302重定向到攻击者控制的页面。以下产品和版本受到影响:IPC-HDBW2XXX、IPC-HFW2XXX、ASI7XXXX。
CVSS Information
N/A
Vulnerability Type
N/A