PT-2025-51361 · Ningyuanda · Ningyuanda Tc155

Keroomi

·

Published

2025-12-16

·

Updated

2025-12-21

·

CVE-2025-14746

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Ningyuanda TC155 version 57.0.2.0
Description A flaw exists in the RTSP Live Video Stream Endpoint component of Ningyuanda TC155, specifically related to improper authentication. This issue allows for authentication bypass when the attack is initiated from within the local network. The exploit for this issue has been publicly disclosed. The vendor was informed of the disclosure but did not provide a response.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2025-14746

Affected Products

Ningyuanda Tc155