An issue in Macro-video Technologies Co.,Ltd V380E6_C1 IP camera (Hw_HsAKPIQp_WF_XHR) 1020302 allows a physically proximate attacker to execute arbitrary code via the /mnt/mtd/mvconf/wifi.ini and /mnt/mtd/mvconf/user_info.ini components.
References
| Link | Resource |
|---|---|
| https://github.com/vladko312/Research_v380_IP_camera | Exploit Third Party Advisory |
| https://github.com/vladko312/Research_v380_IP_camera/blob/main/CVE-2025-25985.md | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2025-04-18 20:15
Updated : 2025-06-25 18:40
NVD link : CVE-2025-25985
Mitre link : CVE-2025-25985
CVE.ORG link : CVE-2025-25985
JSON object : View
Products Affected
macro-video
- v380e6_c1
- v380e6_c1_firmware
CWE
CWE-256
Plaintext Storage of a Password
