CVE-2013-3613
Dahua DVR - Unauthenticated Remote Access via UPnP Replay Attack
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2013-3613.
AI-analyzed exploit summary The exploit demonstrates an authentication bypass vulnerability in Dahua DVR devices by sending crafted binary protocol commands to TCP port 37777, allowing unauthorized access to sensitive information and administrative functions.
Description
Dahua DVR appliances do not properly restrict UPnP requests, which makes it easier for remote attackers to obtain access via vectors involving a replay attack against the TELNET port.
Exploits (1)
The exploit demonstrates an authentication bypass vulnerability in Dahua DVR devices by sending crafted binary protocol commands to TCP port 37777, allowing unauthorized access to sensitive information and administrative functions.