CVE-2025-30141

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Mar 18, 2025
Updated: Mar 25, 2025
CWE ID 284

Summary

CVE-2025-30141 is a vulnerability affecting G-Net Dashcam BB GONX devices. The issue enables remote access to recorded and live video feeds through exposed API endpoints on ports 9091 and 9092. An attacker on the same network can retrieve all stored recordings in JDR format and convert them to MP4. Furthermore, the RTSP stream on port 9092 can be accessed remotely, granting real-time video feed extraction without the owner's knowledge. This vulnerability poses a significant risk to privacy and security.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share