CVE-2026-29114

Severity CVSS v4.0:
LOW
Type:
CWE-538 Insertion of Sensitive Information into Externally-Accessible File or Directory
Publication date:
10/06/2026
Last modified:
10/06/2026

Description

A vulnerability has been found in some Dahua products. An attacker<br /> may obtain the device’s CA root certificate. If that CA is installed and<br /> trusted on client systems, the attacker could issue fraudulent certificates<br /> trusted by those clients and undermine the certificate trust chain.