Ad

CVE-2025-25526

MEDIUM CVSS 3.1: 5.1 EPSS 0.09%
Updated Feb 13, 2025
Buffer
Parameter Value
CVSS 5.1 (MEDIUM)
Type CWE-120 (Buffer Copy without Checking Size)
Vendor Buffer
Public PoC No

Buffer overflow vulnerability in Mercury MIPC552W Camera v1.0 due to the lack of length verification, which is related to the configuration of the PPTP server. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands.

Attack Parameters

Attack Vector
Local
Requires local access
Attack Complexity
Low
Easy to exploit
Privileges Required
None
No privileges needed
User Interaction
None
No user interaction needed

Impact Assessment

Confidentiality
Low
Partial data leak
Integrity
Low
Partial data modification
Availability
None
No disruption

CVSS Vector v3.1