Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2025-7213— FNKvision FNK-GU2 UART Interface on-chip debug and test interface with improper access control

Quick assessment

Affected
FNKvision FNK-GU2
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

FNKvision FNK-GU2是泰国FNKvision公司的一款摄像头。 FNKvision FNK-GU2 40.1.7及之前版本存在安全漏洞,该漏洞源于UART接口访问控制不当,可能导致片上调试和测试接口被利用。

CVSS 6.4 · Medium EPSS 0.18% · P7

Possible ATT&CK Techniques 1 AI

T1057 · Process Discovery
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2025-7213

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
FNKvision FNK-GU2 UART Interface on-chip debug and test interface with improper access control
Source: CVE Program / CVE List V5
Vulnerability Description
A vulnerability classified as critical has been found in FNKvision FNK-GU2 up to 40.1.7. Affected is an unknown function of the component UART Interface. The manipulation leads to on-chip debug and test interface with improper access control. It is possible to launch the attack on the physical device. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
CWE-1191
Source: CVE Program / CVE List V5
Vulnerability Title
FNKvision FNK-GU2 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
FNKvision FNK-GU2是泰国FNKvision公司的一款摄像头。 FNKvision FNK-GU2 40.1.7及之前版本存在安全漏洞,该漏洞源于UART接口访问控制不当,可能导致片上调试和测试接口被利用。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
FNKvision FNK-GU2 40.1.0 -

II. Public POCs for CVE-2025-7213

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-7213

请登录查看更多情报信息。

Same Patch Batch · FNKvision · 2025-07-09 · 3 CVEs total

CVE-2025-7214 1.6 LOW FNKvision FNK-GU2 MD5 shadow risky encryption
CVE-2025-7215 1.6 LOW FNKvision FNK-GU2 wpa_supplicant.conf cleartext storage

IV. Related Vulnerabilities

V. Comments for CVE-2025-7213

No comments yet


Leave a comment