7.7

CVE-2024-52331

Exploit

ECOVACS lawnmowers and vacuums deterministic firmware encryption key

ECOVACS robot lawnmowers and vacuums use a deterministic symmetric key to decrypt firmware updates. An attacker can create and encrypt malicious firmware that will be successfully decrypted and installed by the robot.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ecovacs ≫ Deebot 900 Firmware Version -
   Ecovacs ≫ Deebot 900 Version -
Ecovacs ≫ Deebot N8 Firmware Version -
   Ecovacs ≫ Deebot N8 Version -
Ecovacs ≫ Deebot T8 Firmware Version -
   Ecovacs ≫ Deebot T8 Version -
Ecovacs ≫ Deebot N9 Firmware Version -
   Ecovacs ≫ Deebot N9 Version -
Ecovacs ≫ Deebot T9 Firmware Version -
   Ecovacs ≫ Deebot T9 Version -
Ecovacs ≫ Deebot N10 Firmware Version -
   Ecovacs ≫ Deebot N10 Version -
Ecovacs ≫ Deebot T10 Firmware Version -
   Ecovacs ≫ Deebot T10 Version -
Ecovacs ≫ Deebot X1 Firmware Version -
   Ecovacs ≫ Deebot X1 Version -
Ecovacs ≫ Deebot T20 Firmware Version -
   Ecovacs ≫ Deebot T20 Version -
Ecovacs ≫ Deebot X2 Firmware Version -
   Ecovacs ≫ Deebot X2 Version -
Ecovacs ≫ Goat G1 Firmware Version -
   Ecovacs ≫ Goat G1 Version -
Ecovacs ≫ Airbot Z1 Firmware Version -
   Ecovacs ≫ Airbot Z1 Version -
Ecovacs ≫ Airbot Ava Firmware Version -
   Ecovacs ≫ Airbot Ava Version -
Ecovacs ≫ Airbot Andy Firmware Version -
   Ecovacs ≫ Airbot Andy Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.22% 0.124
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
cisa-cg 7.7 0 0
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
cisa-cg 7.5 1.6 5.9
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
CWE-1391 Use of Weak Credentials

The product uses weak credentials (such as a default key or hard-coded password) that can be calculated, derived, reused, or guessed by an attacker.

CWE-327 Use of a Broken or Risky Cryptographic Algorithm

The product uses a broken or risky cryptographic algorithm or protocol.

CWE-494 Download of Code Without Integrity Check

The product downloads source code or an executable from a remote location and executes the code without sufficiently verifying the origin and integrity of the code.

https://dontvacuum.me/talks/37c3-2023/37c3-vacuuming-and-mowing.pdf
Third Party Advisory
Exploit
https://dontvacuum.me/talks/HITCON2024/HITCON-CMT-2024_Ecovacs.html
Third Party Advisory
Exploit