An authentication bypass vulnerability, tracked as CVE-2025-10538, has been identified in LG Innotek camera models LND7210 and LNV7210R. This flaw allows remote attackers to gain unauthorized access to sensitive camera information, including user account details. The vulnerability is rated as high severity, with a CVSS v4 score of 8.8, indicating significant risk if exploited. Both affected camera models are widely deployed in commercial facilities and are used globally, increasing the potential impact of this security issue. The vulnerability can be exploited remotely and requires low attack complexity, meaning attackers do not need advanced skills or physical access to compromise the devices. Successful exploitation could grant an attacker administrative access, enabling them to manipulate camera settings, access video feeds, or harvest user credentials. The vulnerability is categorized under CWE-288, which involves authentication bypass using an alternate path or channel. All versions of the LND7210 and LNV7210R models are affected, and there are no unaffected versions available. The issue was reported to CISA by security researcher Souvik Kandar, highlighting the importance of coordinated vulnerability disclosure. LG Innotek has acknowledged the vulnerability but has stated that these camera models are end-of-life products and will not receive security patches. As a result, organizations using these cameras are advised to consider device replacement or network segmentation to mitigate risk. The vulnerability's presence in end-of-life products underscores the ongoing security challenges posed by legacy devices in critical infrastructure environments. CISA has issued an advisory to inform stakeholders and recommend mitigation strategies. The widespread deployment of these cameras in commercial sectors and their unpatchable status elevate the urgency for asset owners to take immediate action. Organizations should review their inventories for affected models and implement compensating controls where possible. The disclosure of this vulnerability serves as a reminder of the risks associated with unsupported hardware in operational environments. Security teams are encouraged to monitor for signs of exploitation and to prioritize the decommissioning of vulnerable devices. The incident highlights the need for proactive lifecycle management and regular security assessments of connected devices.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
CVE-2025-10538, an authentication bypass vulnerability affecting LG Innotek cameras, was publicly listed by CVE tracking sources as a high-severity issue. This represents public cataloging of a specific vulnerability associated with the broader LG Innotek camera disclosures.
CISA released ICS advisory ICSA-25-273-07 covering multiple vulnerabilities affecting multiple LG Innotek camera models. The advisory marks the public disclosure of the issue set affecting these devices.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.