PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-29115 Dahua CVE debrief

CVE-2026-29115 is a medium-severity vulnerability (CVSS Score: 6.9) that affects certain Dahua products. An authenticated remote attacker can exploit this vulnerability by sending a specially crafted packet, triggering an exception that causes the system to reboot unexpectedly, resulting in a denial of service. The vulnerability was published on [cvePublishedAt] and last modified on [cveModifiedAt].

Vendor
Dahua
Product
IPC/SD
CVSS
MEDIUM 6.9
CISA KEV
Not listed in stored evidence
Original CVE published
2026-06-10
Original CVE updated
2026-06-10
Advisory published
2026-06-10
Advisory updated
2026-06-10

Who should care

Users of affected Dahua products should apply patches or mitigations as recommended by the vendor.

Technical summary

The vulnerability allows an authenticated remote attacker to send a specially crafted packet, triggering an exception that causes the system to reboot unexpectedly, resulting in a denial of service.

Defensive priority

Medium

Recommended defensive actions

  • Apply patches or mitigations recommended by Dahua as referenced at resourceLinkAnnotations with linkId 'ref-4'.
  • Restrict access to affected systems to authorized users only.
  • Monitor system logs for suspicious activity.

Evidence notes

The CVE record and details are sourced from official databases and vendor advisories.

Official resources

CVE-2026-29115 was published on 2026-06-10T07:16:25.027Z and last modified on 2026-06-10T20:11:16.543Z.