'; } else{ echo ''; } echo '
|
|
|||
| Rule General Information |
|---|
| Release Date: | 2025-08-12 | |
| Rule Name: | Dahua DSS Dssp_deleteArea SQL Injection Vulnerability | |
| Severity: | ||
| CVE ID: | ||
| Rule Protection Details |
|---|
| Description: | The Dssp_deleteArea endpoint of Dahua DSS Integrated Security Management Platform is affected by an SQL injection vulnerability. This vulnerability enables authenticated attackers to manipulate the background database by constructing malicious requests, potentially stealing sensitive data or taking full control of the server. | |
| Impact: | An attacker can inject arbitrary sql commands to view or change the database of the target by exploiting the vulnerability successfully. | |
| Affected OS: | Windows, Linux, Others | |
| Reference: | ||
| Solutions |
|---|
| Please contact the software vendor to update the software patch. |