- EPSS 0.01%
- Veröffentlicht 12.10.2025 23:15:32
- Zuletzt bearbeitet 28.10.2025 02:02:15
A vulnerability was determined in Tomofun Furbo 360 and Furbo Mini. The impacted element is an unknown function of the file /etc/shadow of the component Password Handler. Executing manipulation can lead to use of weak hash. The physical device can be...
CVE-2025-11649
- EPSS 0.02%
- Veröffentlicht 12.10.2025 22:32:05
- Zuletzt bearbeitet 28.10.2025 02:01:01
A vulnerability was found in Tomofun Furbo 360 and Furbo Mini. The affected element is an unknown function of the component Root Account Handler. Performing manipulation results in use of hard-coded password. The attack must be initiated from a local...
CVE-2025-11648
- EPSS 0.08%
- Veröffentlicht 12.10.2025 22:15:33
- Zuletzt bearbeitet 28.10.2025 01:59:44
A vulnerability has been found in Tomofun Furbo 360 and Furbo Mini. Impacted is an unknown function of the file TF_FQDN.json of the component GATT Interface URL Handler. Such manipulation leads to server-side request forgery. The attack may be perfor...
CVE-2025-11647
- EPSS 0.04%
- Veröffentlicht 12.10.2025 21:32:06
- Zuletzt bearbeitet 28.10.2025 01:58:51
A flaw has been found in Tomofun Furbo 360 and Furbo Mini. This issue affects some unknown processing of the component GATT Service. This manipulation of the argument DeviceToken causes information disclosure. The attack is only possible within the l...
CVE-2025-11646
- EPSS 0.04%
- Veröffentlicht 12.10.2025 21:02:05
- Zuletzt bearbeitet 27.10.2025 18:14:37
A vulnerability was detected in Tomofun Furbo 360 and Furbo Mini. This vulnerability affects unknown code of the component GATT Service. The manipulation results in improper access controls. The attack can only be performed from the local network. Th...
CVE-2025-11644
- EPSS 0.04%
- Veröffentlicht 12.10.2025 20:02:05
- Zuletzt bearbeitet 29.10.2025 13:45:01
A weakness has been identified in Tomofun Furbo 360 and Furbo Mini. Affected by this issue is some unknown functionality of the component UART Interface. Executing manipulation can lead to insecure storage of sensitive information. The physical devic...
CVE-2025-11643
- EPSS 0.08%
- Veröffentlicht 12.10.2025 19:32:05
- Zuletzt bearbeitet 29.10.2025 13:47:18
A security flaw has been discovered in Tomofun Furbo 360 and Furbo Mini. Affected by this vulnerability is an unknown functionality of the file /squashfs-root/furbo_img of the component MQTT Client Certificate. Performing manipulation results in hard...
- EPSS 0.03%
- Veröffentlicht 12.10.2025 19:02:05
- Zuletzt bearbeitet 29.10.2025 13:48:14
A vulnerability was identified in Tomofun Furbo 360 and Furbo Mini. Affected is an unknown function of the component Registration Handler. Such manipulation leads to denial of service. The attack can be executed directly on the physical device. The a...
CVE-2025-11641
- EPSS 0.02%
- Veröffentlicht 12.10.2025 18:32:05
- Zuletzt bearbeitet 30.10.2025 19:23:11
A vulnerability was determined in Tomofun Furbo 360 and Furbo Mini. This impacts an unknown function of the component Trial Restriction Handler. This manipulation causes improper access controls. It is feasible to perform the attack on the physical d...
CVE-2025-11640
- EPSS 0.01%
- Veröffentlicht 12.10.2025 18:15:34
- Zuletzt bearbeitet 29.10.2025 13:53:21
A vulnerability was found in Tomofun Furbo 360 and Furbo Mini. This affects an unknown function of the component Bluetooth Low Energy. The manipulation results in cleartext transmission of sensitive information. Access to the local network is require...