PT-2026-52691 · Reolink · Reolink Home Hub
CVSS v4.0
5.8
Medium
| Vector | AV:A/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X |
Name of the Vulnerable Software and Affected Versions
Reolink Home Hub versions prior to v3.3.0.456 26031911
Description
The netclient and factory services are susceptible to brute-force cracking of credentials. This allows an attacker on the same local network to intercept traffic between the Hub and associated cameras to compromise the credentials of the connected cameras.
Recommendations
Update Reolink Home Hub to version v3.3.0.456 26031911 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Reolink Home Hub