CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Neatorobotics 7Botvac Connected Firmware Botvac D3 Connected FirmwareBotvac D3 Pro Connected Firmware+4 moreNov 21, 2024 Feb 23, 2019 N/A· v4 7.4 HIGH· v3 4.4 MEDIUM· v2 Secure boot bypass and memory extraction can be achieved on Neato Botvac Connected 2.2.0 devices. During startup, the AM335x secure boot feature decrypts and executes firmware. Secure boot can be bypassed by starting wit...Show more |
1Neatorobotics 5Botvac D3 Connected Firmware Botvac D4 Connected FirmwareBotvac D5 Connected Firmware+2 moreNov 21, 2024 Sep 18, 2018 N/A· v4 5.3 MEDIUM· v3 2.9 LOW· v2 An issue was discovered on Neato Botvac Connected 2.2.0 devices. They execute unauthenticated manual drive commands (sent to /bin/webserver on port 8081) if they already have an active session. Commands like forward, bac...Show more |
1Neatorobotics 6Botvac 85 Firmware Botvac D3 Connected FirmwareBotvac D4 Connected Firmware+3 moreNov 21, 2024 Sep 18, 2018 N/A· v4 2.4 LOW· v3 2.1 LOW· v2 An issue was discovered on Neato Botvac Connected 2.2.0 and Botvac 85 1.2.1 devices. Static encryption is used for the copying of so-called "black box" logs (event logs and core dumps) to a USB stick. These logs are RC4-...Show more |