Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-30112


On 70mai Dash Cam 1S devices, by connecting directly to the dashcam's network and accessing the API on port 80 and RTSP on port 554, an attacker can bypass the device authorization mechanism from the official mobile app that requires a user to physically press on the power button during a connection.


Published

2025-03-24T17:15:21.550

Last Modified

2025-03-27T16:45:46.410

Status

Awaiting Analysis

Source

[email protected]

Severity

CVSSv3.1: 7.1 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-288

Affected Vendors & Products

-


References