Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wgmc-5v7x-58m5

Опубликовано: 23 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.8
CVSS3: 9.6

Описание

ECOVACS robot lawnmowers and vacuums are vulnerable to command injection via SetNetPin() over an unauthenticated BLE connection.

ECOVACS robot lawnmowers and vacuums are vulnerable to command injection via SetNetPin() over an unauthenticated BLE connection.

EPSS

Процентиль: 82%
0.01685
Низкий

5.8 Medium

CVSS4

9.6 Critical

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 9.6
nvd
около 1 года назад

ECOVACS robot lawnmowers and vacuums are vulnerable to command injection via SetNetPin() over an unauthenticated BLE connection.

EPSS

Процентиль: 82%
0.01685
Низкий

5.8 Medium

CVSS4

9.6 Critical

CVSS3

Дефекты

CWE-77