9.8
CVE-2026-50085
- EPSS 0.41%
- Veröffentlicht 12.06.2026 15:01:13
- Zuletzt bearbeitet 09.07.2026 17:44:25
- CVE-Watchlists
- Unerledigt
Aqara Board IoT insecure debug API
The Aqara Board service (op-test.aqara.com) accepts arbitrary MQTT command payloads, and forwards them to the platfom's HiveMQ broker without authentication. This is an instance of "CWE-306: Missing Authentication for Critical Function" and has an estimated CVSS ofCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L (8.6 High). When combined with CVE-2026-50082, CVE-50083, and CVE-50084, this can lead to a fully unauthenticated, remote takeover of affected devices.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Aqara ≫ Board Service Version2026-04-20
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.41% | 0.332 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| 44488dab-36db-4358-99f9-bc116477f914 | 8.6 | 3.9 | 4.7 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L
|
CWE-306 Missing Authentication for Critical Function
The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.
https://github.com/xn0tsa/theres-no-place-like-home
https://www.runzero.com/advisories/aqara-board-iot-insecure-debug-api-cve-2026-50085