AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-66405

HIGH · CVSS 8.8 EPSS 0.51%

Source: NVD + CISA KEV + EPSS · Published 2026-08-10 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

The DEEBOT PRO M1 and DEEBOT PRO K1VAC models have a vulnerability due to enabled telnet servers, allowing unauthorized access to the devices. This could lead to potential exploitation, including remote control or manipulation of the vacuum's functions. Users of these products, particularly those in home automation or IoT environments, should prioritize addressing this issue to mitigate security risks.

CVE
CVE-2026-66405
Severity
HIGH
CVSS
8.8
EPSS
0.51%

Original NVD Description

DEEBOT PRO M1 and DEEBOT PRO K1VAC leave the telnet servers enabled. The telnet service may be leveraged to log in to the affected products.