CVE-2025-2556

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Mar 20, 2025
CWE ID 120

Summary

CVE-2025-2556 is a vulnerability affecting the Video Stream Handler component of Audi UTR Dashcam 2.0. This issue involves hard-coded credentials within an unknown functionality of the component. An attacker must be present in the local network to exploit this vulnerability. The exploit has been made public, increasing the risk of unauthorized access. Audi has released versions 2.89 and 2.90 to address this issue, and it is recommended that affected users upgrade their components as soon as possible. The vendor responded professionally to the reported issue and will provide a fix for both new and existing customers.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • SoftEther VPN

Affected Vendors

  • SoftEther Corporation