Known Vulnerabilities for products from Neatorobotics

Listed below are 7 of the newest known vulnerabilities associated with the vendor "Neatorobotics".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2018-20785 Secure boot bypass and memory extraction can be achieved on Neato Botvac Connected 2.2.0 devices. During startup, the AM335x ... 7.4 - HIGH 2019-02-23 2019-10-03
CVE-2018-19442 A Buffer Overflow in Network::AuthenticationClient::VerifySignature in /bin/astro in Neato Botvac Connected 2.2.0 allows a re... 9.8 - CRITICAL 2019-04-25 2020-01-22
CVE-2018-19441 An issue was discovered in Neato Botvac Connected 2.2.0. The GenerateRobotPassword function of the NeatoCrypto library genera... 4.7 - MEDIUM 2020-01-27 2020-02-05
CVE-2018-18638 A command injection vulnerability in the setup API in the Neato Botvac Connected 2.2.0 allows network attackers to execute ar... 8.1 - HIGH 2018-10-24 2019-10-03
CVE-2018-17178 An issue was discovered on Neato Botvac Connected 2.2.0 devices. They execute unauthenticated manual drive commands (sent to ... 5.3 - MEDIUM 2018-09-18 2021-06-17
CVE-2018-17177 An issue was discovered on Neato Botvac Connected 2.2.0 and Botvac 85 1.2.1 devices. Static encryption is used for the copyin... 2.4 - LOW 2018-09-18 2021-06-17
CVE-2018-17176 A replay issue was discovered on Neato Botvac Connected 2.2.0 devices. Manual control mode requires authentication, but once ... 7.5 - HIGH 2018-09-18 2020-08-24