Access Control Vulnerability in Tomofun Furbo 360 and Furbo Mini
CVE-2025-11641
1LOW
What is CVE-2025-11641?
A vulnerability has been identified in the Tomofun Furbo 360 and Furbo Mini involving the Trial Restriction Handler, leading to improper access control. This vulnerability can be exploited on the physical device, presenting a significant risk, particularly given the high complexity of the attack. Affected firmware versions include Furbo 360 up to FB0035_FW_036 and Furbo Mini up to MC0020_FW_074. Despite attempts to inform the vendor, no response was received regarding this issue.
Affected Version(s)
Furbo 360
Furbo Mini