Authentication Bypass in Flock Safety Android Collins App Affects Camera Devices
CVE-2025-59403
9.8CRITICAL
What is CVE-2025-59403?
The Flock Safety Android Collins application version 6.35.31 for Android suffers from an authentication bypass, exposing sensitive administrative API endpoints on port 8080. These unprotected endpoints allow unauthorized access to critical functionalities like rebooting devices, accessing logs, and enabling remote debugging. This security flaw can lead to various impacts, including denial of service, information leakage, and remote code execution, as attackers within the network can potentially gain shell access through unauthenticated commands.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
