Risky Cryptographic Algorithm in FNKvision FNK-GU2 Wireless IP Camera Firmware
CVE-2025-7214

1LOW

Key Information:

Vendor

Fnkvision

Status
Vendor
CVE Published:
9 July 2025

What is CVE-2025-7214?

A vulnerability in FNKvision's FNK-GU2 Wireless IP Camera affects versions up to 40.1.7, identified by a problematic function related to the /etc/shadow file. The vulnerability arises from the use of a risky MD5 cryptographic algorithm, which can potentially be exploited physically on the device. Although the complexity of the attack is considerable, public disclosure suggests that the exploit may be leveraged by malicious actors. Users should take preventive measures and consider updating or securing their devices against potential exploitation.

Affected Version(s)

FNK-GU2 40.1.0

FNK-GU2 40.1.1

FNK-GU2 40.1.2

References

CVSS V4

Score:
1
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Physical
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

0xHasta (VulDB User)
.
CVE-2025-7214 : Risky Cryptographic Algorithm in FNKvision FNK-GU2 Wireless IP Camera Firmware