A vulnerability has been found in some Dahua products. An attacker
may obtain the device’s CA root certificate. If that CA is installed and
trusted on client systems, the attacker could issue fraudulent certificates
trusted by those clients and undermine the certificate trust chain.
may obtain the device’s CA root certificate. If that CA is installed and
trusted on client systems, the attacker could issue fraudulent certificates
trusted by those clients and undermine the certificate trust chain.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 10 Jun 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dahua
Dahua ipc |
|
| Vendors & Products |
Dahua
Dahua ipc |
Wed, 10 Jun 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in some Dahua products. An attacker may obtain the device’s CA root certificate. If that CA is installed and trusted on client systems, the attacker could issue fraudulent certificates trusted by those clients and undermine the certificate trust chain. | |
| Weaknesses | CWE-538 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: dahua
Published:
Updated: 2026-06-10T05:44:50.397Z
Reserved: 2026-03-04T03:32:28.880Z
Link: CVE-2026-29114
No data.
Status : Received
Published: 2026-06-10T07:16:24.890
Modified: 2026-06-10T07:16:24.890
Link: CVE-2026-29114
No data.
OpenCVE Enrichment
Updated: 2026-06-10T07:30:24Z
Weaknesses