7.5
CVSSv3

CVE-2025-2343

CVSSv4: 7.7 | CVSSv3: 7.5 | CVSSv2: 6.8 | VMScore: 870 | EPSS: 0.0003 | KEV: Not Included
Published: 16/03/2025 Updated: 16/03/2025

Vulnerability Summary

Critical Hardcoded Credentials Vulnerability in IROAD Dash Cam X5 and X6

A critical vulnerability exists in IROAD Dash Cam X5 and X6 versions up to 20250308. The Device Pairing component contains a flaw that allows manipulation leading to hard-coded credentials. An attacker needs local network access to potentially exploit this issue. The attack complexity is considered high, and successful exploitation appears challenging. Despite early vendor disclosure, IROAD did not respond to the reported security problem.

Vulnerable Product Search on Vulmon Subscribe to Product

iroad dash cam x5

iroad dash cam x6