Device Registration Handler Vulnerability in Thinkware Car Dashcam F800 Pro
CVE-2025-2119

1LOW

Key Information:

Vendor

Thinkware

Vendor
CVE Published:
9 March 2025

Badges

๐Ÿ‘พ Exploit Exists

What is CVE-2025-2119?

A vulnerability has been identified in the Thinkware Car Dashcam F800 Pro affecting the device registration handler, which allows for exploitation via the use of default credentials. This issue presents a challenge as it requires physical access to the device for an attack to be executed. The complexity of the attack is elevated, making it difficult to exploit. Despite being disclosed to the public and addressed to the vendor, no response has been forthcoming from Thinkware, raising concerns about device security and user data protection.

Affected Version(s)

Car Dashcam F800 Pro 20250226

References

CVSS V4

Score:
1
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Physical
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • ๐ŸŸก

    Public PoC available

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

Credit

geochen (VulDB User)
.