Vulnerability Details CVE-2025-65293
Command injection vulnerabilities in Aqara Camera Hub G3 4.1.9_0027 allow attackers to execute arbitrary commands with root privileges through malicious QR codes during device setup and factory reset.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 13.3%
CVSS Severity
CVSS v3 Score 6.6
Products affected by CVE-2025-65293
-
cpe:2.3:h:aqara:camera_hub_g3:-
-
cpe:2.3:o:aqara:camera_hub_g3_firmware:4.1.9_0027