Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-46256 | The cloud service used by ECOVACS robot lawnmowers and vacuums allows authenticated attackers to bypass the PIN entry required to access the live video feed. |
Tue, 23 Sep 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ecovacs
Ecovacs home |
|
| CPEs | cpe:2.3:a:ecovacs:home:*:*:*:*:*:android:*:* cpe:2.3:a:ecovacs:home:*:*:*:*:*:iphone_os:*:* |
|
| Vendors & Products |
Ecovacs
Ecovacs home |
Wed, 12 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 23 Jan 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The cloud service used by ECOVACS robot lawnmowers and vacuums allows authenticated attackers to bypass the PIN entry required to access the live video feed. | |
| Title | ECOVACS lawnmower and vacuum cloud service live video PIN bypass | |
| Weaknesses | CWE-603 CWE-807 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: cisa-cg
Published:
Updated: 2025-02-12T20:41:28.703Z
Reserved: 2024-11-08T01:06:02.404Z
Link: CVE-2024-52327
Updated: 2025-02-12T20:35:26.432Z
Status : Analyzed
Published: 2025-01-23T17:15:13.890
Modified: 2025-09-23T17:34:21.930
Link: CVE-2024-52327
No data.
OpenCVE Enrichment
No data.
EUVD