CVE-2025-30124
An issue was discovered on Marbella KR8s Dashcam FF 2.0.8 devices. When a new SD card is inserted into the dashcam, the existing password is written onto the SD card in cleartext automatically. An attacker with temporary access to the dashcam can switch the SD card to steal this password.
Vendor
-
Product
-
CWE
Yayın Tarihi
2025-07-28 14:15:26
Güncelleme
2025-07-30 16:15:26
Source Identifier
cve@mitre.org
KEV Date Added
-
Kategoriler
Referanslar
https://geochen.medium.com/marbella-dashcam-ab40ca41adec
https://github.com/geo-chen/Marbella/
https://github.com/geo-chen/Marbella/blob/main/README.md#finding-4---cve-2025-30124-passwords-are-stored-in-plaintext-and-can-be-retrieved-with-physical-contact
https://makagps.com/
https://github.com/geo-chen/Marbella/blob/main/README.md#finding-4---cve-2025-30124-passwords-are-stored-in-plaintext-and-can-be-retrieved-with-physical-contact