CVE-2025-9381 details an information disclosure vulnerability in the FNKvision Y215 CCTV Camera, specifically affecting an unknown part of the /tmp/wpa_supplicant.conf file. This flaw carries a low CVSS score of 1.6, indicating a physical attack vector with high complexity and difficult exploitability, resulting in a limited impact of information disclosure. While an exploit has been publicly released, there is no evidence of active exploitation, and it has garnered minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| FNKvision | Y215 CCTV Camera | 10.194.120.40CNA affected |
CVSS version used by this source: 4.0
CVSS:4.0/AV:P/AC:H/AT:N/PR:H/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.