CVE-2025-30199
Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
05/09/2025
Last modified:
08/09/2025
Description
ECOVACS vacuum robot base stations do not validate firmware updates, so malicious over-the-air updates can be sent to base station via insecure connection between robot and base station.
Impact
Base Score 4.0
7.50
Severity 4.0
HIGH
Base Score 3.x
7.20
Severity 3.x
HIGH