Actively Exploited in the Wild

This vulnerability is being actively exploited in the wild.

FNKvision Y215 CCTV Camera Hard-Coded Root Credentials Vulnerability

Vulnerability

A vulnerability exists in the FNKvision Y215 CCTV Camera running firmware version 10.194.120.40. The issue arises from hard-coded root credentials embedded in multiple binaries, including the encoder and wifidaemon. These credentials are used to automatically generate the /etc/passwd file, granting root access through a shell. This vulnerability requires local access to exploit, but the exploit is publicly available.

Impact

Exploitation of this vulnerability allows for unauthorized root access on the affected camera, enabling full control over the device.

Reproduction

The vulnerability can be reproduced by accessing the camera's firmware, either through a firmware dump or via the UART connection. The hard-coded credentials can be extracted from the firmware and validated through the serial console. Once the credentials are obtained, they can be used to log in as root via the UART connection.

Added: Aug 24, 2025, 7:16 AM
Updated: Aug 24, 2025, 7:16 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
5.0
remediation
0.0
relevance
0.4
threat
8.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.