VYPR
Unrated severityNVD Advisory· Published Jan 23, 2025· Updated Feb 12, 2025

ECOVACS lawnmowers and vacuums do not properly validate TLS certificates

CVE-2024-52330

Description

ECOVACS lawnmowers and vacuums do not properly validate TLS certificates. An unauthenticated attacker can read or modify TLS traffic, possibly modifying firmware updates.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.