A security notice has revealed serious flaws in some Dahua products. Network admins need to fix these issues fast.
The official DHCC-SA-202606-001 alert points out three major problems with different IP cameras (IPC), PTZ cameras (SD), network video recorders (NVR), and other special devices. If not fixed, these risky flaws could greatly threaten physical security networks around the world.
By infosecbulletin
/ Sunday , July 26 2026
PentesterFlow is a new open-source AI tool for command lines. It is made for penetration testers and bug bounty hunters....
Read More
By infosecbulletin
/ Sunday , July 26 2026
A famous AI red team expert claimed developing a universal jailbreak that can work against top large language models, like...
Read More
By infosecbulletin
/ Saturday , July 25 2026
A new study from Beacom College shows that all automation scripts produced by top AI models like ChatGPT, Microsoft Copilot,...
Read More
By infosecbulletin
/ Saturday , July 25 2026
Origin Energy Limited, a major energy provider in Australia, has said there was a cybersecurity issue with unauthorized access to...
Read More
By infosecbulletin
/ Thursday , July 23 2026
Anthropic launched the Claude Security plugin in beta. This tool uses AI to find serious security flaws in Claude Code....
Read More
By infosecbulletin
/ Thursday , July 23 2026
ASUS has put out important security updates for a serious router flaw. This issue could let remote hackers run any...
Read More
By infosecbulletin
/ Thursday , July 23 2026
SolarWinds has shared important security updates for its Serv-U file transfer software. These updates fix 15 problems that could let...
Read More
By infosecbulletin
/ Wednesday , July 22 2026
Oracle has fixed over 1,400 security holes in its July 2026 Critical Patch Update (CPU). Most of these flaws were...
Read More
By infosecbulletin
/ Wednesday , July 22 2026
Zimbra has launched updates to fix serious security flaws, including a command injection bug in the SNMP monitoring part. As...
Read More
By infosecbulletin
/ Wednesday , July 22 2026
The Qilin ransomware group is exploiting a flaw in PAN-OS GlobalProtect to break into victims' networks, says the cybersecurity firm...
Read More
First, CVE-2026-29114 exposes a sensitive certificate chain issue with a CVSS base score of 2.3. According to the advisory, “An attacker may obtain the device’s CA root certificate.” Consequently, if this CA is trusted by client systems, an attacker “could issue fraudulent certificates trusted by those clients and undermine the certificate trust chain.” This presents long-term risks for secure communications.
Additionally, there are two DoS problems that risk the ongoing access to important surveillance feeds. CVE-2026-29115 has a CVSS score of 6.9 and lets a logged-in attacker crash the system from afar. Even more concerning, CVE-2026-29116 is a serious problem with a CVSS score of 8.7, and it doesn’t need any login.
The official report says it “could let an attacker without authentication send a special packet, causing the system to restart unexpectedly and lead to a denial of service.” This means hackers can turn off your security cameras when they want.
Mitigating these Dahua product issues needs quick action from IT teams. Check your device models and build dates. For instance, many IPC and SD models made before March 26, 2026, are at high risk. Admins should update to the latest firmware using cloud upgrades or manual downloads. For all the details, check the official Dahua security notice. Protect your systems by patching now.