CVE-2025-30138

An issue was discovered on G-Net Dashcam BB GONX devices. Managing Settings and Obtaining Sensitive Data and Sabotaging Car Battery can be performed by unauthorized persons. It allows unauthorized users to modify critical system settings once connected to its network. Attackers can extract sensitive car and driver information, mute dashcam alerts to prevent detection, disable recording functionality, or even factory reset the device. Additionally, they can disable battery protection, causing the dashcam to drain the car battery when left on overnight. These actions not only compromise privacy but also pose potential physical harm by rendering the dashcam non-functional or causing vehicle battery failure.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:gnetsystem:g-onx_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:gnetsystem:g-onx:-:*:*:*:*:*:*:*

History

01 Jul 2025, 21:04

Type Values Removed Values Added
First Time Gnetsystem g-onx Firmware
Gnetsystem g-onx
Gnetsystem
CPE cpe:2.3:h:gnetsystem:g-onx:-:*:*:*:*:*:*:*
cpe:2.3:o:gnetsystem:g-onx_firmware:-:*:*:*:*:*:*:*
References () https://www.gnetsystem.com/eng/product/list?viewMode=view&idx=246&ca_id=0201 - () https://www.gnetsystem.com/eng/product/list?viewMode=view&idx=246&ca_id=0201 - Product
References () https://github.com/geo-chen/GNET - () https://github.com/geo-chen/GNET - Third Party Advisory

18 Mar 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-18 20:15

Updated : 2025-07-01 21:04


NVD link : CVE-2025-30138

Mitre link : CVE-2025-30138


JSON object : View

Products Affected

gnetsystem

  • g-onx_firmware
  • g-onx
CWE

No CWE.