Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
DEEBOT PRO M1 and DEEBOT PRO K1VAC incorrectly implement authentication algorithm in Websocket communications. An unauthenticated attacker may connect and operate the affected robot.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Vulnerability Type
认证算法的不正确实现
Vulnerability Title
Hellohas Robotics DEEBOT PRO M1 授权问题漏洞
Vulnerability Description
Hellohas Robotics DEEBOT PRO M1是日本Hellohas Robotics公司的一款智能家居清洁机器人。 Hellohas Robotics DEEBOT PRO M1 M1-1.7.27之前版本和DEEBOT PRO K1VAC V1.7.821之前版本存在授权问题漏洞,该漏洞源于Websocket通信中身份验证算法实现不当,可能导致未经身份验证的攻击者连接并操作受影响的机器人。
CVSS Information
N/A
Vulnerability Type
N/A