Dahua Technologies
First CVE: Nov 13, 2017Active for: 9 years
49
CVEs Published
More CVEs Published than 57% of tracked CNAs
4.9
Avg CVEs / Year
More Avg CVEs / Year than 32% of tracked CNAs
6.9
Avg CVSS Score
Higher Avg CVSS Score than 39% of tracked CNAs
4.1%
In CISA KEV
Higher KEV Rate than 95% of tracked CNAs
Self-Reporting Analysis
Of all the CVEs published by Dahua Technologies as a CNA, 4.1% affect products that Dahua Technologies develops as a vendor.
95.9%
Self-reported: 2Third-party: 47
Of all the CVEs published that affect products developed by Dahua Technologies, 66.7% are self-published by Dahua Technologies as a CNA.
66.7%
33.3%
Self-published: 2Published by other CNAs: 1
Trends Over Time
The number and severity of CVEs published by Dahua Technologies over time
Volume of CVEsAvg CVSS Base Score
First CVE
Nov 13, 2017
8 years ago
Most Recent CVE
Jun 10, 2026
44 days ago
Top CVEs
All CVEs published by Dahua Technologies as a CNA, regardless of affected vendor or product.
49 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-33044CRITICAL The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing maliciou | Sep 15, 2021 | 9.8 | 98 | YES | YES |
CVE-2021-33045CRITICAL The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing maliciou | Sep 15, 2021 | 9.8 | 97 | YES | YES |
CVE-2026-29116HIGH A vulnerability has been found in some Dahua products could
allow an unauthenticated remote attacker to send a specially crafted packet,
triggering an exception that causes the sys | Jun 10, 2026 | 8.7 | 35 | NO | NO |
CVE-2020-9502CRITICAL Some Dahua products with Build time before December 2019 have Session ID predictable vulnerabilities. During normal user access, an attacker can use the predicted Session ID to con | May 13, 2020 | 9.8 | 30 | NO | NO |
CVE-2025-31701HIGH A vulnerability has been found in Dahua products.
Attackers could exploit a buffer overflow vulnerability by sending specially crafted malicious packets, potentially causing servi | Jul 23, 2025 | 8.1 | 29 | NO | NO |
CVE-2025-31700HIGH A vulnerability has been found in Dahua products.
Attackers could exploit a buffer overflow vulnerability by sending specially crafted malicious packets, potentially causing servi | Jul 23, 2025 | 8.1 | 29 | NO | NO |
CVE-2021-33046CRITICAL Some Dahua products have access control vulnerability in the password reset process. Attackers can exploit this vulnerability through specific deployments to reset device passwords | Jan 13, 2022 | 9.8 | 29 | NO | NO |
CVE-2019-9677CRITICAL The specific fields of CGI interface of some Dahua products are not strictly verified, an attacker can cause a buffer overflow by constructing malicious packets. Affected products | Sep 18, 2019 | 9.8 | 29 | NO | NO |
CVE-2017-9315CRITICAL Customer of Dahua IP camera or IP PTZ could submit relevant device information to receive a time limited temporary password from Dahua authorized dealer to reset the admin password | Nov 28, 2017 | 9.8 | 29 | NO | NO |
CVE-2024-39950CRITICAL A vulnerability has been found in Dahua products. Attackers can send carefully crafted data packets to the interface with vulnerabilities to initiate device initialization. | Jul 31, 2024 | 9.8 | 28 | NO | NO |
CVE Severity & Scoring
Severity distribution of CVEs published by this CNA49 CVEs
10%
33%
43%
14%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local2 (4.1%)
Network46 (93.9%)
Unknown0 (0.0%)
Physical1 (2.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low37 (75.5%)
High12 (24.5%)
Unknown0 (0.0%)
User Interaction
None47 (95.9%)
Unknown0 (0.0%)
Required1 (2.0%)
Privileges Required
Low8 (16.3%)
High7 (14.3%)
None34 (69.4%)
Unknown0 (0.0%)
Exploit Exposure
Signals from CVEs in this cna scope (49 CVEs).
CISA KEV
2 CVEs
4.1% of CVEs· 95th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
2 CVEs
4.1% of CVEs· 91st percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
An overview of all social media posts that mention a CVE ID published by Dahua Technologies as a CNA.
Media Mentions
Media articles that mention a CVE ID published by Dahua Technologies as a CNA — matched by CVE ID, not by organization name.