Actively Exploited in the Wild

This vulnerability is being actively exploited in the wild.

FLIR Systems FLIR Thermal Camera F/FC/PT/D Hard-Coded SSH Credentials

Vulnerability

A vulnerability exists in FLIR Thermal Cameras in the F, FC, PT, and D series, specifically in firmware version 8.0.0.64. The issue stems from hard-coded SSH credentials embedded in the camera's Linux distribution, which cannot be altered through standard camera operations. This flaw allows unauthorized remote access to the camera system.

Impact

Exploitation of this vulnerability provides unauthorized remote access to the affected thermal camera system.

Remediation

FLIR has released a security patch for this vulnerability. Instructions for applying the patch can be obtained by contacting FLIR's thermal support at product.thermal.support@flir.com.

Added: Jan 8, 2026, 12:44 AM
Updated: Jan 8, 2026, 12:44 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
9.1
remediation
7.7
relevance
1.9
threat
8.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.