CVE-2025-2347

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Mar 16, 2025
CWE ID 79

Summary

CVE-2025-2347 is a recently disclosed vulnerability affecting IROAD Dash Cam FX2 models up to version 20250308. This issue lies in the Device Registration component's processing, which can be exploited by manipulating the argument Password with the input "qwertyuiop." By doing so, the default password is utilized instead of the intended one. This vulnerability can only be exploited within a local network, and the exploit has been made public, increasing the risk for potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share