Tomofun Furbo 360 ଯେପର୍ଯ୍ୟନ୍ତ FB0035_FW_036 Audio ଦୌଡ଼ ଅବସ୍ଥା

Dogoggorri kan akka ସମସ୍ୟାଜନକ jedhamuun ramadame Tomofun Furbo 360 ଯେପର୍ଯ୍ୟନ୍ତ FB0035_FW_036 keessatti argameera. Miidhaan irra gahe is hojii hin beekamne kutaa Audio Handler keessa. Dhugumatti jijjiirraa gara ଦୌଡ଼ ଅବସ୍ଥା geessa. Waliigalteewwan CWE fayyadamuun rakkoo ibsuun gara CWE-362 si geessa. Dogoggorri 05/15/2025 irratti adda bahe. Beekumsi kun yeroo 10/11/2025 ifoomsifameera kan ifoomsise Calvin Star, Julian B (skelet4r and dead1nfluence) waliin Software Secured. Dogoggorri kun maqaa CVE-2025-11637 jedhuun tajaajilama. Weerara fageenya irraa jalqabuun ni danda'ama. Odeeffannoon teeknikaa hin jiru. Akka dabalataan, meeshaa balaa kana fayyadamuuf argama. Yeroo ammaa, gatii exploit might be approx. USD $0-$5k beekamuu danda'a. ପ୍ରୁଫ୍-ଅଫ୍-କନ୍ସେପ୍ଟ jedhamee murtaa’eera. Hanqinni kun guyyoota 148 ol tajaajila zero-day kan hin beekkaminitti fayyadamee ture. Waggaa 0-day ta'ee, gatiin isaa daldala dhoksaa keessatti $0-$5k jedhamee tilmaamame. Once again VulDB remains the best source for vulnerability data.

6 ଆଡାପ୍ଟେସନ୍ · 117 ପଏଣ୍ଟ

ଫିଲ୍ଡଅଦ୍ୟତନ 1/5
10/12/2025 08:06 PM
ଅଦ୍ୟତନ 2/5
10/12/2025 08:18 PM
ଅଦ୍ୟତନ 3/5
10/16/2025 07:41 AM
ଅଦ୍ୟତନ 4/5
10/16/2025 07:44 AM
ଅଦ୍ୟତନ 5/5
10/31/2025 04:51 AM
software_vendorTomofunTomofunTomofunTomofunTomofun
software_nameFurbo 360Furbo 360Furbo 360Furbo 360Furbo 360
software_version<=FB0035_FW_036<=FB0035_FW_036<=FB0035_FW_036<=FB0035_FW_036<=FB0035_FW_036
software_componentAudio HandlerAudio HandlerAudio HandlerAudio HandlerAudio Handler
vulnerability_cweCWE-362 (ଦୌଡ଼ ଅବସ୍ଥା)CWE-362 (ଦୌଡ଼ ଅବସ୍ଥା)CWE-362 (ଦୌଡ଼ ଅବସ୍ଥା)CWE-362 (ଦୌଡ଼ ଅବସ୍ଥା)CWE-362 (ଦୌଡ଼ ଅବସ୍ଥା)
vulnerability_risk11111
cvss3_vuldb_avNNNNN
cvss3_vuldb_acLLLLL
cvss3_vuldb_prLLLLL
cvss3_vuldb_uiNNNNN
cvss3_vuldb_sUUUUU
cvss3_vuldb_cNNNNN
cvss3_vuldb_iNNNNN
cvss3_vuldb_aLLLLL
source_cveCVE-2025-11637CVE-2025-11637CVE-2025-11637CVE-2025-11637CVE-2025-11637
cna_responsibleVulDBVulDBVulDBVulDBVulDB
response_summaryThe vendor was contacted early about this disclosure but did not respond in any way.The vendor was contacted early about this disclosure but did not respond in any way.The vendor was contacted early about this disclosure but did not respond in any way.The vendor was contacted early about this disclosure but did not respond in any way.The vendor was contacted early about this disclosure but did not respond in any way.
cvss2_vuldb_avNNNNN
cvss2_vuldb_acLLLLL
cvss2_vuldb_ciNNNNN
cvss2_vuldb_iiNNNNN
cvss2_vuldb_aiPPPPP
cvss4_vuldb_avNNNNN
cvss4_vuldb_acLLLLL
cvss4_vuldb_prLLLLL
cvss4_vuldb_uiNNNNN
cvss4_vuldb_vcNNNNN
cvss4_vuldb_viNNNNN
cvss4_vuldb_vaLLLLL
cvss2_vuldb_auSSSSS
cvss2_vuldb_eNDNDNDPOCPOC
cvss2_vuldb_rlNDNDNDNDND
cvss2_vuldb_rcNDNDNDNDND
cvss3_vuldb_eXXXPP
cvss3_vuldb_rlXXXXX
cvss3_vuldb_rcXXXXX
cvss4_vuldb_atNNNNN
cvss4_vuldb_scNNNNN
cvss4_vuldb_siNNNNN
cvss4_vuldb_saNNNNN
cvss4_vuldb_eXXXXX
cvss2_vuldb_basescore4.04.04.04.04.0
cvss2_vuldb_tempscore4.04.04.04.03.6
cvss3_vuldb_basescore4.34.34.34.34.3
cvss3_vuldb_tempscore4.34.34.34.14.1
cvss3_meta_basescore4.34.34.34.34.1
cvss3_meta_tempscore4.34.34.34.24.0
cvss4_vuldb_bscore5.35.35.35.35.3
cvss4_vuldb_btscore5.35.35.32.12.1
advisory_date1760133600 (10/11/2025)1760133600 (10/11/2025)1760133600 (10/11/2025)1760133600 (10/11/2025)1760133600 (10/11/2025)
price_0day$0-$5k$0-$5k$0-$5k$0-$5k$0-$5k
euvd_idEUVD-2025-33901EUVD-2025-33901EUVD-2025-33901EUVD-2025-33901EUVD-2025-33901
cve_nvd_summaryA vulnerability was detected in Tomofun Furbo 360 up to FB0035_FW_036. Impacted is an unknown function of the component Audio Handler. Performing manipulation results in race condition. The attack is possible to be carried out remotely. The vendor was contacted early about this disclosure but did not respond in any way.A vulnerability was detected in Tomofun Furbo 360 up to FB0035_FW_036. Impacted is an unknown function of the component Audio Handler. Performing manipulation results in race condition. The attack is possible to be carried out remotely. The vendor was contacted early about this disclosure but did not respond in any way.A vulnerability was detected in Tomofun Furbo 360 up to FB0035_FW_036. Impacted is an unknown function of the component Audio Handler. Performing manipulation results in race condition. The attack is possible to be carried out remotely. The vendor was contacted early about this disclosure but did not respond in any way.A vulnerability was detected in Tomofun Furbo 360 up to FB0035_FW_036. Impacted is an unknown function of the component Audio Handler. Performing manipulation results in race condition. The attack is possible to be carried out remotely. The vendor was contacted early about this disclosure but did not respond in any way.
cvss4_cna_avNNNN
cvss4_cna_acLLLL
cvss4_cna_atNNNN
cvss4_cna_prLLLL
cvss4_cna_uiNNNN
cvss4_cna_vcNNNN
cvss4_cna_viNNNN
cvss4_cna_vaLLLL
cvss4_cna_scNNNN
cvss4_cna_siNNNN
cvss4_cna_saNNNN
cvss4_cna_bscore5.35.35.35.3
cvss3_cna_avNNNN
cvss3_cna_acLLLL
cvss3_cna_prLLLL
cvss3_cna_uiNNNN
cvss3_cna_sUUUU
cvss3_cna_cNNNN
cvss3_cna_iNNNN
cvss3_cna_aLLLL
cvss3_cna_basescore4.34.34.34.3
cvss2_cna_avNNNN
cvss2_cna_acLLLL
cvss2_cna_auSSSS
cvss2_cna_ciNNNN
cvss2_cna_iiNNNN
cvss2_cna_aiPPPP
cvss2_cna_basescore4444
developer_nicknamedead1nfluencedead1nfluencedead1nfluence
vulnerability_discoverydate1747332000 (05/15/2025)1747332000 (05/15/2025)1747332000 (05/15/2025)
company_websitehttps://www.softwaresecured.com/bloghttps://www.softwaresecured.com/bloghttps://www.softwaresecured.com/blog
advisory_disputed000
person_nicknameskelet4r/dead1nfluenceskelet4r/dead1nfluenceskelet4r/dead1nfluence
advisory_confirm_date1751509800 (07/03/2025)1751509800 (07/03/2025)1751509800 (07/03/2025)
exploit_availability111
company_nameSoftware SecuredSoftware SecuredSoftware Secured
developer_nameJulian BJulian BJulian B
exploit_wormified000
vulnerability_vendorinformdate1750539600 (06/21/2025)1750539600 (06/21/2025)1750539600 (06/21/2025)
advisory_advisoryquoteAn attacker who gains access to a victim's account can use a race condition to issue multiple treat toss command in parallel which will break the audio on the device. As a result, no further audio can be played from the device until it has been rebooted.An attacker who gains access to a victim's account can use a race condition to issue multiple treat toss command in parallel which will break the audio on the device. As a result, no further audio can be played from the device until it has been rebooted.An attacker who gains access to a victim's account can use a race condition to issue multiple treat toss command in parallel which will break the audio on the device. As a result, no further audio can be played from the device until it has been rebooted.
exploit_languageJavaScriptJavaScriptJavaScript
software_typeFirmware SoftwareFirmware SoftwareFirmware Software
exploit_publicity000
vulnerability_historic000
person_nameCalvin Star/Julian BCalvin Star/Julian BCalvin Star/Julian B
exploit_freeformen1. Create a Frida Script which hooks into the Treat Toss Sound function and send multiple sounds in quick succession 2. On a rooted Android phone, with Frida Server installed, open the Furbo app and connect to your camera. 3. Run the Frida script 4. In the mobile app select the treat toss. 5. Observe that a short noise is played, and, after having ended the Frida script, the device will no longer make noise1. Create a Frida Script which hooks into the Treat Toss Sound function and send multiple sounds in quick succession 2. On a rooted Android phone, with Frida Server installed, open the Furbo app and connect to your camera. 3. Run the Frida script 4. In the mobile app select the treat toss. 5. Observe that a short noise is played, and, after having ended the Frida script, the device will no longer make noise1. Create a Frida Script which hooks into the Treat Toss Sound function and send multiple sounds in quick succession 2. On a rooted Android phone, with Frida Server installed, open the Furbo app and connect to your camera. 3. Run the Frida script 4. In the mobile app select the treat toss. 5. Observe that a short noise is played, and, after having ended the Frida script, the device will no longer make noise
advisory_falsepositive000
cvss3_nvd_avN
cvss3_nvd_acH
cvss3_nvd_prN
cvss3_nvd_uiN
cvss3_nvd_sU
cvss3_nvd_cN
cvss3_nvd_iN
cvss3_nvd_aL
cvss3_nvd_basescore3.7

Are you interested in using VulDB?

Download the whitepaper to learn more about our service!