CVE-2025-1242

The administrative credentials can be extracted through application API responses, mobile application reverse engineering, and device firmware reverse engineering. The exposure may result in an attacker gaining full administrative access to the Gardyn IoT Hub exposing connected devices to malicious control.
Configurations

No configuration.

History

25 Feb 2026, 16:23

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-25 16:23

Updated : 2026-02-27 14:06


NVD link : CVE-2025-1242

Mitre link : CVE-2025-1242

CVE.ORG link : CVE-2025-1242


JSON object : View

Products Affected

No product.

CWE
CWE-798

Use of Hard-coded Credentials