CVE-2018-17176
18.09.2018, 18:29
A replay issue was discovered on Neato Botvac Connected 2.2.0 devices. Manual control mode requires authentication, but once recorded, the authentication (always transmitted in cleartext) can be replayed to /bin/webserver on port 8081. There are no nonces, and timestamps are not checked at all.Enginsight
Vendor | Product | Version |
---|---|---|
neatorobotics | botvac_d4_connected_firmware | 2.2.0 |
neatorobotics | botvac_d6_connected_firmware | 2.2.0 |
neatorobotics | botvac_d7_connected_firmware | 2.2.0 |
𝑥
= Vulnerable software versions