PoC Index

CVE-2025-70962

HIGH 7.5EPSS 0.4%

Zosi C519M V4.2.8.823C01450BA is vulnerable to Incorrect Access Control. The application contains hardcoded credentials in the RTSP authentication mechanism. An attacker with network access can use the unchangeable default credentials to access the RTSP video stream, resulting in unauthorized viewing of camera footage.

CVSS v3.1
7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS
0.38% chance of exploitation in the next 30 days, 31th percentile
Published
2026-08-05

Proof-of-concept exploits (1)

References

Related