CVE-2026-29114
Severity CVSS v4.0:
LOW
Type:
CWE-538
Insertion of Sensitive Information into Externally-Accessible File or Directory
Publication date:
10/06/2026
Last modified:
10/06/2026
Description
A vulnerability has been found in some Dahua products. An attacker<br />
may obtain the device’s CA root certificate. If that CA is installed and<br />
trusted on client systems, the attacker could issue fraudulent certificates<br />
trusted by those clients and undermine the certificate trust chain.
Impact
Base Score 4.0
2.30
Severity 4.0
LOW



