github.comexploit
https://github.com/geo-chen/IROAD?tab=readme-ov-file CVE-2025-2347
MEDIUM
IROAD Dash Cam FX2 Device Registration default password
Record summary
CVE-2025-2347 has a selected CVSS score of 5.3 (medium).
Description
A vulnerability was found in IROAD Dash Cam FX2 up to 20250308 and classified as problematic. This issue affects some unknown processing of the component Device Registration. The manipulation of the argument Password with the input qwertyuiop leads to use of default password. The attack needs to be done within the local network. The exploit has been disclosed to the public and may be used.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Mar 17, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Dash Cam FX2Browse IROAD / Dash Cam FX2 | CVE List | 20250308 | affected |
References
4nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2025-2347 VDB-299813 | CTI Indicators (IOB, IOC, IOA)signaturepermissions required
https://vuldb.com/?ctiid.299813 VDB-299813 | IROAD Dash Cam FX2 Device Registration default passwordvdb entryTechnical description
https://vuldb.com/?id.299813