Insecure Permissions in Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell
CVE-2025-55629
6.5MEDIUM
What is CVE-2025-55629?
The Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell features a critical flaw due to insecure permissions in its firmware. This vulnerability allows unprivileged attackers to modify user passwords by manipulating the userName input. This security oversight could lead to unauthorized access to user accounts, thereby compromising the integrity and security of personal information.
