Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-103890. PoCs published by bashis.
AI-analyzed exploit summary This Python script demonstrates an authentication bypass vulnerability in Dahua DVR/NVR/IPC devices by exploiting undocumented direct file access to download user credentials and log in without valid authentication. It supports both Generation 2 and 3 devices with different hash processing methods.
Description
Dahua Generation 2/3 - Backdoor Access
Exploits (1)
This Python script demonstrates an authentication bypass vulnerability in Dahua DVR/NVR/IPC devices by exploiting undocumented direct file access to download user credentials and log in without valid authentication. It supports both Generation 2 and 3 devices with different hash processing methods.