PT-2025-11643 · G Net · G-Net Dashcam Bb Gonx
CVE-2025-30139
·
Publicado
2025-03-18
·
Atualizado
2025-07-02
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
G-Net Dashcam BB GONX devices (affected versions not specified)
Description
An issue was discovered where default credentials for the SSID cannot be changed, allowing any nearby attacker to connect to the dashcam's network without restriction. The dashcam broadcasts a fixed SSID with default credentials that cannot be changed. Once connected, an attacker can sniff on connected devices such as the user's smartphone. The SSID is also always broadcasted.
Recommendations
For G-Net Dashcam BB GONX devices, as a temporary workaround, consider restricting access to the dashcam's network to minimize the risk of exploitation. Avoid using the default credentials for the SSID until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
G-Net Dashcam Bb Gonx