CVE-2025-2344

A vulnerability, which was classified as critical, has been found in IROAD Dash Cam X5 and Dash Cam X6 up to 20250308. Affected by this issue is some unknown functionality of the component API Endpoint. The manipulation leads to missing authentication. The attack may be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Se ha detectado una vulnerabilidad, clasificada como crítica, en IROAD Dash Cam X5 y Dash Cam X6 hasta la versión 20250308. Este problema afecta a una funcionalidad desconocida del componente API Endpoint. La manipulación provoca la omisión de la autenticación. El ataque podría ejecutarse de forma remota. Se contactó al proveedor con antelación para informarle sobre esta divulgación, pero no respondió.

16 Mar 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-16 18:15

Updated : 2026-04-15 00:35


NVD link : CVE-2025-2344

Mitre link : CVE-2025-2344

CVE.ORG link : CVE-2025-2344


JSON object : View

Products Affected

No product.

CWE
CWE-287

Improper Authentication

CWE-306

Missing Authentication for Critical Function