AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-66411

MEDIUM · CVSS 5.3 EPSS 0.39%

Source: NVD + CISA KEV + EPSS · Published 2026-08-10 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The DEEBOT PRO M1 and DEEBOT PRO K1VAC models have a vulnerability in their Websocket communication due to improper authentication implementation. This flaw allows unauthenticated attackers to connect to and control the affected robotic devices, potentially leading to unauthorized access and manipulation. Organizations using these models should prioritize remediation to mitigate risks associated with unauthorized control of their robotic systems.

CVE
CVE-2026-66411
Severity
MEDIUM
CVSS
5.3
EPSS
0.39%

Original NVD Description

DEEBOT PRO M1 and DEEBOT PRO K1VAC incorrectly implement authentication algorithm in Websocket communications. An unauthenticated attacker may connect and operate the affected robot.