PT-2025-2638 · Ecovacs Robotics · Ecovacs Deebot T20E Omni

Eyüp Sabri Kayacan

·

Published

2025-01-14

·

Updated

2025-01-19

·

CVE-2024-42911

CVSS v3.1

7.4

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions ECOVACS Robotics Deebot T20 OMNI and T20e OMNI versions prior to 1.24.0
Description A WiFi Remote Code Execution issue was discovered, affecting the mentioned robot vacuums. This issue allows for remote code execution via WiFi.
Recommendations For versions prior to 1.24.0, update to version 1.24.0 or later to resolve the issue.

Fix

RCE

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-42911

Affected Products

Ecovacs Deebot T20E Omni