CVE-2025-70962: Zosi C519M vulnerability
Zosi C519M V4.2.8.823C01450BA is vulnerable to Incorrect Access Control. The application contains hardcoded credentials in the RTSP authentication mechanism. An attacker with network access can use the unchangeable default credentials to access the RTSP video stream, resulting in unauthorized viewing of camera footage.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-70962?
The severity of CVE-2025-70962 is rated at a risk score of 54.
How do I fix CVE-2025-70962?
To fix CVE-2025-70962, update to the latest version of the Zosi C519M software that addresses the hardcoded credentials issue.
What vulnerability does CVE-2025-70962 address?
CVE-2025-70962 addresses an incorrect access control vulnerability due to hardcoded credentials in the RTSP authentication mechanism.
Can CVE-2025-70962 lead to unauthorized access?
Yes, an attacker with network access can exploit CVE-2025-70962 to gain unauthorized viewing access to the RTSP video stream.
What are the implications of CVE-2025-70962 for users?
The implications for users of Zosi C519M include the risk of unauthorized access to video feeds, compromising privacy and security.