Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j6rq-2fh3-fx6g

Опубликовано: 28 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An issue was discovered on Marbella KR8s Dashcam FF 2.0.8 devices. When a new SD card is inserted into the dashcam, the existing password is written onto the SD card in cleartext automatically. An attacker with temporary access to the dashcam can switch the SD card to steal this password.

An issue was discovered on Marbella KR8s Dashcam FF 2.0.8 devices. When a new SD card is inserted into the dashcam, the existing password is written onto the SD card in cleartext automatically. An attacker with temporary access to the dashcam can switch the SD card to steal this password.

EPSS

Процентиль: 12%
0.00042
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-312

Связанные уязвимости

CVSS3: 9.8
nvd
6 месяцев назад

An issue was discovered on Marbella KR8s Dashcam FF 2.0.8 devices. When a new SD card is inserted into the dashcam, the existing password is written onto the SD card in cleartext automatically. An attacker with temporary access to the dashcam can switch the SD card to steal this password.

EPSS

Процентиль: 12%
0.00042
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-312