CVE-2026-66405CWE-489

CVE-2026-66405

High · published August 10, 2026

CVSS v3.1
8.8
EPSS
0%
Percentile
20.4
In the wild
Unconfirmed
What it is

DEEBOT PRO M1 and DEEBOT PRO K1VAC leave the telnet servers enabled. The telnet service may be leveraged to log in to the affected products.

The record
Technical detail
CVSS v3.1
8.8 · HIGH
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.00282 · 20.4th percentile
Weakness
CWE-489 · Active Debug Code
Published
2026-08-10T13:17Z
References (2)
EPSS history
Timeline
  • 10 AUG 07:59Z
    DEEBOT PRO M1 and DEEBOT PRO K1VAC leave the telnet servers enabled
    cvelistv5