Loading
Generated remediation guidance and an executive summary. No account required.
Some Dahua products with Build time before December 2019 have Session ID predictable vulnerabilities. During normal user access, an attacker can use the predicted Session ID to construct a data packet to attack the device.
Use CWE-330, Dahuasecurity vendor hub and Sd6al Firmware product page to widen CVE-2020-9502 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-33044, CVE-2021-33046 and CVE-2019-9682 for nearby disclosures in the same product family.