CVE-2025-25985

Severity CVSS v4.0:
Pending analysis
Type:
CWE-256 Plaintext Storage of a Password
Publication date:
18/04/2025
Last modified:
25/06/2025

Description

An issue in Macro-video Technologies Co.,Ltd V380E6_C1 IP camera (Hw_HsAKPIQp_WF_XHR) 1020302 allows a physically proximate attacker to execute arbitrary code via the /mnt/mtd/mvconf/wifi.ini and /mnt/mtd/mvconf/user_info.ini components.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:macro-video:v380e6_c1_firmware:1020302:*:*:*:*:*:*:*
cpe:2.3:h:macro-video:v380e6_c1:-:*:*:*:*:*:*:*