CVE-2023-27748: Blackvue DR750-2ch Ir Lte Firmware

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

BlackVue DR750-2CH LTE v.1.012_2022.10.26 does not employ authenticity check for uploaded firmware. This can allow attackers to upload crafted firmware which contains backdoors and enables arbitrary code execution.

Affected products

  • Blackvue DR750-2ch Ir Lte Firmware: version 1.012_2022.10.26 only
  • Blackvue DR750-2ch Lte Firmware: version 1.012_2022.10.26 only

Published 2023-04-13. Last modified 2026-06-17.