CVE-2025-2119

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Mar 9, 2025
CWE ID 122

Summary

CVE-2025-2119 is a newly identified vulnerability affecting Thinkware Car Dashcam F800 Pro devices up to version 20250226. This issue, located within the Device Registration Handler component, exposes default credentials, making it susceptible to unauthorized access. Physical access to the device is required to exploit this issue, and the complexity of an attack is considered high due to the need for direct manipulation of the device. The exploit for this vulnerability has been made public, increasing the potential for malicious actors to take advantage of it. Despite being contacted about the disclosure, the vendor has yet to respond.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share