CNNVD-202508-3159 Information

CNNVD ID

CNNVD-202508-3159

CVE-2024-13985

  • CNNVD Published: 2025-08-27

Description (Chinese)

Dahua EIMS是中国大华(Dahua)公司的一个企业信息管理系统。 Dahua EIMS 2240008之前版本存在安全漏洞,该漏洞源于输入验证不足,可能导致命令注入攻击。

Description (English)

Dahua EIMS is an enterprise information management system for Dahua. There was a security loophole in the pre-Dahua EIMS 2240008 version, which stemmed from inadequate input verification and could lead to an order for an attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

大华

Published

2025-08-27

Last Modified

2026-02-24

References

https://www.vulncheck.com/advisories/dahua-eims-rce https://www.cnvd.org.cn/flaw/show/CNVD-2024-17054 https://support.dahuatech.com/bulletin/info?IsDpValue=APKncD%2FBd6zIq4O2BUpuhjg6hGbLYAQKuf5hnmPaK9M%3D https://s4e.io/tools/dahua-eims-remote-code-execution https://pentest-tools.com/vulnerabilities-exploits/dahua-eims-remote-command-execution_23961 https://github.com/ahisec/nuclei-tps/blob/main/ https://cn-sec.com/archives/2554372.html https://blog.csdn.net/weixin_43567873/article/details/136636198 https://nvd.nist.gov/vuln/detail/CVE-2024-13985

Share on: