PT-2025-54259 · Ksenia Security · Ksenia Security Lares 4.0 Home Automation

Mencha Isajlovska

·

Published

2024-07-03

·

Updated

2026-03-11

·

CVE-2025-15111

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Ksenia Security Lares 4.0 Home Automation version 1.6
Description Ksenia Security Lares 4.0 Home Automation version 1.6 has a default credentials issue that allows unauthorized access to administrative functions. Successful exploitation grants attackers full control of the home automation system.
Recommendations Change the default administrative credentials.

Exploit

Fix

Using Hardcoded Credentials

Weakness Enumeration

Related Identifiers

BDU:2026-00331
CVE-2025-15111

Affected Products

Ksenia Security Lares 4.0 Home Automation