HTTP: Dahua Security Cameras Improper Authentication

This signature detects attempts to exploit a known vulnerability against Dahua Security Cameras. A successful attack can lead to security bypass.

Extended Description

The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.

Short Name
HTTP:CTS:DAHUA-CAMERA-AUTH-BYPS
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Authentication CVE-2021-33044 CVE-2021-33045 Cameras Dahua Improper Security
Release Date
05/02/2025
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3805
False Positive
Unknown

Found a potential security threat?