CVE-2026-101055 Thinkware U3000 信息泄露漏洞
影响远程攻击者可读取设备敏感信息
Thinkware U3000 行车记录仪(版本至 1.02.04)的 TCP 服务中 GET_STATUS 功能存在信息泄露漏洞。攻击者可通过操纵 wifi_info 参数远程获取敏感信息,且利用代码已公开。厂商被提前联系但未作回应。
影响范围
Thinkware U3000 至 1.02.04 版本受影响,更高版本是否修复暂无公开信息。
漏洞详情
该漏洞属于信息泄露类型,成因是 TCP 服务的 GET_STATUS 功能对 wifi_info 参数处理不当,未做充分校验或访问控制。远程攻击者可通过网络发送特制请求,操纵该参数读取设备中的敏感信息。利用代码已公开,可能被用于实际攻击。
利用条件与风险
攻击者需能通过网络访问设备的 TCP 服务端口,无需认证即可远程利用。由于利用代码公开且厂商未回应,实战风险较高。
修复建议
官方暂未发布修复方案,建议关注厂商公告。临时缓解措施包括限制 TCP 服务端口的网络访问、将设备置于隔离网络或防火墙之后。
A security flaw has been discovered in Thinkware U3000 up to 1.02.04. Affected by this vulnerability is the function GET_STATUS of the component TCP Service. The manipulation of the argument wifi_info results in information disclosure. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.