CVE-2025-3653 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an improper access control vulnerability that allows unauthorized device manipulation by accep…
Medium CVSS: 6.9

CVE-2025-3653

Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an improper access control vulnerability that allows unauthorized device manipulation by accepting arbitrary serial numbers without ownership verification. Attackers can control any device by sending serial numbers to device control APIs to change feeding schedules, trigger manual feeds, access camera feeds, and modify device settings without authorization checks.
Vendor
Petlibro
Product
Petlibro
CWE
CWE-612
Yayın Tarihi
2026-01-04 00:15:44
Güncelleme
2026-02-03 17:38:41
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar