ZeroHour

CVE-2025-55630

PoC
CVSS 3.1
7.3 high
EPSS
<1%p18
Published
()
Modified
Description

A discrepancy in the error message returned by the login function of Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 when entering the wrong username and password allows attackers to enumerate existing accounts.

Vendors
reolink
Products
smart 2k\+ plug-in wi-fi video doorbell with chime firmware
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.