CVE-2025-7576
7.3Teledyne FLIR · FB-Series O and FH-Series ID
A critical improper access control vulnerability in Teledyne FLIR production tools allows remote, unauthenticated attackers to access sensitive management files.
Executive summary
A critical vulnerability in Teledyne FLIR camera series allows remote, unauthenticated attackers to bypass access controls, posing a significant risk of unauthorized system interaction.
Vulnerability
The vulnerability exists within the production.html file of the component Production Tools, where improper access controls allow remote, unauthenticated attackers to interact with sensitive administrative functionality.
Business impact
The exploitation of this vulnerability could lead to unauthorized access to sensitive device management interfaces, potentially resulting in the compromise of physical security monitoring capabilities. With a CVSS score of 7.3, this flaw represents a high risk to operational integrity, as it allows remote attackers to manipulate device settings without requiring valid credentials.
Remediation
Immediate Action: Since the vendor has not provided a patch, restrict network access to the affected devices by placing them behind a firewall or within a segmented management network to prevent unauthorized remote access.
Proactive Monitoring: Monitor device access logs for suspicious or unauthorized connections to the /priv/production/production.html endpoint.
Compensating Controls: Deploy a Web Application Firewall or similar network security appliance to block requests directed at the vulnerable management interface from untrusted IP addresses.
Exploitation status
Public Exploit Available: Yes, a published proof-of-concept exists, as documented in the linked research write-up (vuldb.com and associated GitHub repository).
Analyst recommendation
Due to the lack of an official vendor patch and the public availability of a proof-of-concept, organizations using Teledyne FLIR FB-Series O and FH-Series ID cameras must treat this as a high-priority risk. Immediately restrict network access to these devices to ensure they are not exposed to the public internet, and continue to monitor vendor channels for future firmware updates that address the underlying access control flaw.
Sources
Originally found and disclosed by waiwai24 (VulDB User), per the CVE Program record.
- VDB-316274 | Teledyne FLIR FB-Series O/FLIR FH-Series ID Production Tools production.html access control Vulnerability database entry
- VDB-316274 | CTI Indicators (IOB, IOC, TTP, IOA)
- Submit #609549 | FLIR FLIR FB-Series O FLIR FB-Series O and ID Firmware, Version 1.3.2.16 Improper Access Controls Third-party advisory
- Related
- Exploit / PoC