CVE-2024-13131
CVSS 2.0 Score 5 of 10 (medium)
Details
Published Jan 5, 2025
CWE ID 284
CWE ID 200
Summary
CVE-2024-13131 is a recently disclosed vulnerability affecting Dahua IPC-HFW1200S, IPC-HFW2300R-Z, IPC-HFW5220E-Z, and IPC-HDW1200S devices up to version 20241222. The issue lies in an unknown part of the /web_caps/webCapsConfig file within the Web Interface component. Successful exploitation results in information disclosure, and attacks can be initiated remotely. The vulnerability has been made public, increasing the risk of potential exploitation, despite early notification to the vendor who did not respond.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Dahua IPC-HFW1200S
Affected Vendors
- Dahua Technology Co. Ltd.