CVE-2025-11639
- EPSS 0.03%
- Veröffentlicht 12.10.2025 17:32:04
- Zuletzt bearbeitet 29.10.2025 13:54:21
A vulnerability has been found in Tomofun Furbo 360 and Furbo Mini. The impacted element is an unknown function of the file collect_logs.sh of the component Debug Log S3 Bucket Handler. The manipulation leads to insecure storage of sensitive informat...
CVE-2025-11638
- EPSS 0.1%
- Veröffentlicht 12.10.2025 17:15:33
- Zuletzt bearbeitet 30.10.2025 19:23:37
A flaw has been found in Tomofun Furbo 360 and Furbo Mini. The affected element is an unknown function of the component Bluetooth Handler. Executing manipulation can lead to denial of service. The attacker needs to be present on the local network. Th...
CVE-2025-11637
- EPSS 0.07%
- Veröffentlicht 12.10.2025 16:32:06
- Zuletzt bearbeitet 30.10.2025 19:40:23
A vulnerability was detected in Tomofun Furbo 360 up to FB0035_FW_036. Impacted is an unknown function of the component Audio Handler. Performing manipulation results in race condition. The attack is possible to be carried out remotely. The vendor wa...
CVE-2025-11636
- EPSS 0.07%
- Veröffentlicht 12.10.2025 15:02:04
- Zuletzt bearbeitet 30.10.2025 19:43:57
A security vulnerability has been detected in Tomofun Furbo 360 up to FB0035_FW_036. This issue affects some unknown processing of the component Account Handler. Such manipulation leads to server-side request forgery. The attack can be executed remot...
CVE-2025-11635
- EPSS 0.09%
- Veröffentlicht 12.10.2025 14:02:05
- Zuletzt bearbeitet 30.10.2025 19:44:57
A weakness has been identified in Tomofun Furbo 360 up to FB0035_FW_036. This vulnerability affects unknown code of the component File Upload. This manipulation causes resource consumption. Remote exploitation of the attack is possible. The vendor wa...
CVE-2025-11634
- EPSS 0.02%
- Veröffentlicht 12.10.2025 12:32:04
- Zuletzt bearbeitet 30.10.2025 19:45:34
A security flaw has been discovered in Tomofun Furbo 360 and Furbo Mini. This affects an unknown part of the component UART Interface. The manipulation results in information disclosure. An attack on the physical device is feasible. The exploit has b...
CVE-2025-11633
- EPSS 0.07%
- Veröffentlicht 12.10.2025 12:15:53
- Zuletzt bearbeitet 30.10.2025 19:46:22
A vulnerability was identified in Tomofun Furbo 360 and Furbo Mini. Affected by this issue is the function upload_file_to_s3 of the file collect_logs.sh of the component HTTP Traffic Handler. The manipulation leads to improper certificate validation....