What is CVE-2021-33044?
CVE-2021-33044 is a critical authentication bypass vulnerability in Dahua cameras, exploited en masse in the 'CameraSwarm' campaign alongside P2P relay abuse to compromise over 14,000 devices. Affected systems must be urgently patched with the latest firmware and their internet-exposed interfaces should be disabled immediately.
Azərbaycanca: CVE-2021-33044 Dahua kameralarında autentifikasiyadan yan keçməyə imkan verən kritik zəiflikdir. Bu zəiflikdən istifadə edən operatorlar P2P relay sui-istifadəsi ilə birlikdə minlərlə kameranı ələ keçirib. Təsirə məruz qalan cihazlar dərhal ən son firmware ilə yenilənməli və internetə açıq interfeyslər bağlanmalıdır.
Related CVEs
link basis: same weakness class CWE-287; shared threat actor: Russian-speaking operator; shared vendors: D-Link, Dahua, Hikvision
FAQ2
What devices are affected by CVE-2021-33044?
This critical authentication bypass vulnerability affects Dahua cameras.
What additional method was used alongside CVE-2021-33044 to compromise thousands of cameras?
The vulnerability was exploited in conjunction with P2P relay abuse.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.