CyberRota Analysis
AI-GeneratedThe DEEBOT PRO M1 and DEEBOT PRO K1VAC models have a vulnerability due to enabled telnet servers, allowing unauthorized access to the devices. This could lead to potential exploitation, including remote control or manipulation of the vacuum's functions. Users of these products, particularly those in home automation or IoT environments, should prioritize addressing this issue to mitigate security risks.
CVE
CVE-2026-66405
Severity
HIGH
CVSS
8.8
EPSS
0.51%
Original NVD Description
DEEBOT PRO M1 and DEEBOT PRO K1VAC leave the telnet servers enabled. The telnet service may be leveraged to log in to the affected products.