VYPR

Botvac D3 Pro Connected Firmware

by Neatorobotics

CVEs (1)

  • CVE-2018-20785HigFeb 23, 2019
    risk 0.48cvss 7.4epss 0.00

    Secure boot bypass and memory extraction can be achieved on Neato Botvac Connected 2.2.0 devices. During startup, the AM335x secure boot feature decrypts and executes firmware. Secure boot can be bypassed by starting with certain commands to the USB serial port. Although a power…