CVE-2025-55626

An Insecure Direct Object Reference (IDOR) vulnerability in Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 allows unauthorized attackers to access the Admin-only settings and edit the session storage.
Configurations

No configuration.

History

22 Aug 2025, 20:15

Type Values Removed Values Added
CWE CWE-284
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3

22 Aug 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-22 17:15

Updated : 2025-08-22 20:15


NVD link : CVE-2025-55626

Mitre link : CVE-2025-55626

CVE.ORG link : CVE-2025-55626


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control