An issue in Macro-video Technologies Co.,Ltd V380E6_C1 IP camera (Hw_HsAKPIQp_WF_XHR) 1020302 allows a physically proximate attacker to execute arbitrary code via the /mnt/mtd/mvconf/wifi.ini and /mnt/mtd/mvconf/user_info.ini components.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/vladko312/Research_v380_IP_camera | Exploit Third Party Advisory | 
| https://github.com/vladko312/Research_v380_IP_camera/blob/main/CVE-2025-25985.md | Exploit Third Party Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
History
                    25 Jun 2025, 18:40
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | 
 | |
| CPE | cpe:2.3:h:macro-video:v380e6_c1:-:*:*:*:*:*:*:* cpe:2.3:o:macro-video:v380e6_c1_firmware:1020302:*:*:*:*:*:*:* | |
| First Time | Macro-video Macro-video v380e6 C1 Firmware Macro-video v380e6 C1 | |
| References | () https://github.com/vladko312/Research_v380_IP_camera - Exploit, Third Party Advisory | |
| References | () https://github.com/vladko312/Research_v380_IP_camera/blob/main/CVE-2025-25985.md - Exploit, Third Party Advisory | 
18 Apr 2025, 21:15
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-256 | |
| CVSS | v2 : v3 : | v2 : unknown v3 : 2.6 | 
18 Apr 2025, 20:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-04-18 20:15
Updated : 2025-06-25 18:40
NVD link : CVE-2025-25985
Mitre link : CVE-2025-25985
CVE.ORG link : CVE-2025-25985
JSON object : View
Products Affected
                macro-video
- v380e6_c1_firmware
- v380e6_c1
CWE
                
                    
                        
                        CWE-256
                        
            Plaintext Storage of a Password
