CVE-2025-2557

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Mar 20, 2025
CWE ID 284
CWE ID 266

Summary

CVE-2025-2557 is a critical vulnerability affecting the Command API component of Audi UTR Dashcam 2.0. This issue allows for improper access controls, enabling manipulation within the local network. The exploit has become public, increasing the risk for potential attacks. Upgrading the affected component to version 2.89 or 2.90 is advised to resolve this vulnerability. Audi has acted professionally in response to these issues, addressing them for both new and existing customers.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share