CyberRota Analysis
AI-GeneratedThe DEEBOT PRO M1 and DEEBOT PRO K1VAC models have a vulnerability in their Websocket communication due to improper authentication implementation. This flaw allows unauthenticated attackers to connect to and control the affected robotic devices, potentially leading to unauthorized access and manipulation. Organizations using these models should prioritize remediation to mitigate risks associated with unauthorized control of their robotic systems.
CVE
CVE-2026-66411
Severity
MEDIUM
CVSS
5.3
EPSS
0.39%
Original NVD Description
DEEBOT PRO M1 and DEEBOT PRO K1VAC incorrectly implement authentication algorithm in Websocket communications. An unauthenticated attacker may connect and operate the affected robot.