CVE-2018-25130

Beward Intercom 2.3.1 contains a credentials disclosure vulnerability that allows local attackers to access plain-text authentication credentials stored in an unencrypted database file. Attackers can read the BEWARD.INTERCOM.FDB file to extract usernames and passwords, enabling unauthorized access to IP cameras and door stations.
Configurations

No configuration.

History

24 Dec 2025, 21:15

Type Values Removed Values Added
References () https://www.zeroscience.mk/en/vulnerabilities/ZSL-2019-5505.php - () https://www.zeroscience.mk/en/vulnerabilities/ZSL-2019-5505.php -

24 Dec 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-24 20:15

Updated : 2025-12-29 15:58


NVD link : CVE-2018-25130

Mitre link : CVE-2018-25130

CVE.ORG link : CVE-2018-25130


JSON object : View

Products Affected

No product.

CWE
CWE-256

Plaintext Storage of a Password