Vulnerability Description
An issue in Macro-video Technologies Co.,Ltd V380E6_C1 IP camera (Hw_HsAKPIQp_WF_XHR) 1020302 allows a physically proximate attacker to execute arbitrary code via the /mnt/mtd/mvconf/wifi.ini and /mnt/mtd/mvconf/user_info.ini components.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Macro-Video | V380E6 C1 Firmware | 1020302 |
| Macro-Video | V380E6 C1 | - |
Related Weaknesses (CWE)
References
- https://github.com/vladko312/Research_v380_IP_cameraExploitThird Party Advisory
- https://github.com/vladko312/Research_v380_IP_camera/blob/main/CVE-2025-25985.mdExploitThird Party Advisory
FAQ
What is CVE-2025-25985?
CVE-2025-25985 is a vulnerability with a CVSS score of 2.6 (LOW). An issue in Macro-video Technologies Co.,Ltd V380E6_C1 IP camera (Hw_HsAKPIQp_WF_XHR) 1020302 allows a physically proximate attacker to execute arbitrary code via the /mnt/mtd/mvconf/wifi.ini and /mnt...
How severe is CVE-2025-25985?
CVE-2025-25985 has been rated LOW with a CVSS base score of 2.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-25985?
Check the references section above for vendor advisories and patch information. Affected products include: Macro-Video V380E6 C1 Firmware, Macro-Video V380E6 C1.