CVE Vulnerabilities

CVE-2025-2347

Use of Default Password

Published: Mar 16, 2025 | Modified: Nov 04, 2025
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A vulnerability was found in IROAD Dash Cam FX2 up to 20250308 and classified as problematic. This issue affects some unknown processing of the component Device Registration. The manipulation of the argument Password with the input qwertyuiop leads to use of default password. The attack needs to be done within the local network. The exploit has been disclosed to the public and may be used.

Weakness

The product uses default passwords for potentially critical functionality.

Affected Software

Name Vendor Start Version End Version
Fx2_firmware Iroadau * 2025-03-08 (including)

Potential Mitigations

References