PT-2025-11614 · Forvia Hella · Hella Driving Recorder Dr 820

Published

2025-03-18

·

Updated

2025-03-18

·

CVE-2025-30114

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Forvia Hella HELLA Driving Recorder DR 820 (affected versions not specified)
Description An issue was discovered where the pairing mechanism of the device relies solely on the connecting device's MAC address. By obtaining the MAC address through network scanning and spoofing it, an attacker can bypass the authentication process and gain full access to the dashcam's features without proper authorization.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-30114

Affected Products

Hella Driving Recorder Dr 820