An issue in JXL 9 Inch Car Android Double Din Player Android v12.0 allows attackers to force the infotainment system into accepting falsified GPS signals as legitimate, resulting in the device reporting an incorrect or static location.
History

Thu, 09 Apr 2026 15:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-941
Metrics cvssV3_1

{'score': 9.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 09 Apr 2026 08:30:00 +0000

Type Values Removed Values Added
First Time appeared Jxlindia
Jxlindia jxl 9 Inch Car Android Double Din Player
Vendors & Products Jxlindia
Jxlindia jxl 9 Inch Car Android Double Din Player

Wed, 08 Apr 2026 20:15:00 +0000

Type Values Removed Values Added
Title GPS Spoofing Vulnerability in JXL 9‑Inch Car Android Double‑Din Player
Weaknesses CWE-295

Tue, 07 Apr 2026 20:45:00 +0000

Type Values Removed Values Added
Description An issue in JXL 9 Inch Car Android Double Din Player Android v12.0 allows attackers to force the infotainment system into accepting falsified GPS signals as legitimate, resulting in the device reporting an incorrect or static location.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2026-04-07T00:00:00.000Z

Updated: 2026-04-09T14:19:30.744Z

Reserved: 2026-01-09T00:00:00.000Z

Link: CVE-2025-69515

cve-icon Vulnrichment

Updated: 2026-04-09T14:17:35.690Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-04-07T20:16:22.950

Modified: 2026-04-09T15:16:08.863

Link: CVE-2025-69515

cve-icon Redhat

No data.