Vulnerabilities > Blackvue

DATE CVE VULNERABILITY TITLE RISK
2023-04-13 CVE-2023-27746 Improper Restriction of Excessive Authentication Attempts vulnerability in Blackvue Dr750-2Ch IR LTE Firmware and Dr750-2Ch LTE Firmware
BlackVue DR750-2CH LTE v.1.012_2022.10.26 was discovered to contain a weak default passphrase which can be easily cracked via a brute force attack if the WPA2 handshake is intercepted.
network
low complexity
blackvue CWE-307
critical
9.8
2023-04-13 CVE-2023-27747 Missing Authentication for Critical Function vulnerability in Blackvue Dr750-2Ch IR LTE Firmware and Dr750-2Ch LTE Firmware
BlackVue DR750-2CH LTE v.1.012_2022.10.26 does not employ authentication in its web server.
network
low complexity
blackvue CWE-306
7.5
2023-04-13 CVE-2023-27748 Insufficient Verification of Data Authenticity vulnerability in Blackvue Dr750-2Ch IR LTE Firmware and Dr750-2Ch LTE Firmware
BlackVue DR750-2CH LTE v.1.012_2022.10.26 does not employ authenticity check for uploaded firmware.
network
low complexity
blackvue CWE-345
critical
9.8