Insecure Direct Object Reference in Reolink's Camera Software
CVE-2025-55621
6.5MEDIUM
What is CVE-2025-55621?
An Insecure Direct Object Reference (IDOR) vulnerability has been identified in Reolink's camera software version 4.54.0.4.20250526. This security flaw allows unauthorized attackers to exploit crafted URLs to gain access to other users' profile photos, posing a risk to user privacy and data security. It is crucial for users to be aware of this vulnerability to take appropriate measures to safeguard their information.
