PT-2025-45388 · Unknown · Ubia Camera Ecosystem
Published
2025-11-06
·
Updated
2025-11-07
·
CVE-2025-12636
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Ubia camera ecosystem (affected versions not specified)
Description
The Ubia camera ecosystem does not adequately secure API credentials, potentially allowing an attacker to connect to backend services. Successful exploitation could grant an attacker unauthorized access to available cameras, enabling them to view live feeds or modify settings. The API endpoint is susceptible to unauthorized access due to insufficient credential protection.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Insufficiently Protected Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ubia Camera Ecosystem