← back
CVE-2026-29114lowCWE-538

CVE-2026-29114

28Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendcvss 2.3epss 0.2%
from disclosure to weapon31 days
Published on NVDJun 10
1st PoC+31d
exploitation probability
0.2%top 91% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
A vulnerability has been found in some Dahua products. An attacker may obtain the device’s CA root certificate. If that CA is installed and trusted on client systems, the attacker could issue fraudulent certificates trusted by those clients and undermine the certificate trust chain.
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N
Affected products
Dahua · IPC
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.