High severity7.3NVD Advisory· Published Aug 22, 2025· Updated Jun 17, 2026
CVE-2025-55630
CVE-2025-55630
Description
A discrepancy in the error message returned by the login function of Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 when entering the wrong username and password allows attackers to enumerate existing accounts.
Affected products
33.0.0.4662_2503122283+ 1 more
- (no CPE)range: 3.0.0.4662_2503122283
- (no CPE)
- cpe:2.3:o:reolink:smart_2k\+_plug-in_wi-fi_video_doorbell_with_chime_firmware:3.0.0.4662_2503122283:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- relieved-knuckle-264.notion.site/User-Enumeration-Vulnerability-23c43700364280b6a46ae6302818b77envdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.