Description
A vulnerability, which was classified as problematic, has been found in FNKvision FNK-GU2 up to 40.1.7. Affected by this issue is some unknown functionality of the file /rom/wpa_supplicant.conf. The manipulation leads to cleartext storage of sensitive information. It is possible to launch the attack on the physical device. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used.
References (4)
Scores
CVSS v3
1.6
EPSS
0.0001
EPSS Percentile
1.7%
Attack Vector
PHYSICAL
CVSS:3.1/AV:P/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
no
Technical Impact
partial
Details
CWE
CWE-310
CWE-312
Status
published
Products (8)
FNKvision/FNK-GU2
40.1.0
FNKvision/FNK-GU2
40.1.1
FNKvision/FNK-GU2
40.1.2
FNKvision/FNK-GU2
40.1.3
FNKvision/FNK-GU2
40.1.4
FNKvision/FNK-GU2
40.1.5
FNKvision/FNK-GU2
40.1.6
FNKvision/FNK-GU2
40.1.7
Published
Jul 09, 2025
Tracked Since
Feb 18, 2026