CVE-2025-13607

A malicious actor can access camera configuration information, including account credentials, without authenticating when accessing a vulnerable URL.
Configurations

No configuration.

History

10 Dec 2025, 21:16

Type Values Removed Values Added
References
  • () https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-343-03.json -
  • () https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10462 -

10 Dec 2025, 18:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-10 18:16

Updated : 2025-12-12 15:18


NVD link : CVE-2025-13607

Mitre link : CVE-2025-13607

CVE.ORG link : CVE-2025-13607


JSON object : View

Products Affected

No product.

CWE
CWE-306

Missing Authentication for Critical Function