Aqara Hub devices including Camera Hub G3 4.1.9_0027, Hub M2 4.3.6_0027, and Hub M3 4.3.6_0025 contain an undocumented remote access mechanism enabling unrestricted remote command execution.
Metrics
Affected Vendors & Products
References
History
Wed, 17 Dec 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Aqara camera Hub G3 Firmware
Aqara hub M2 Firmware Aqara hub M3 Firmware |
|
| CPEs | cpe:2.3:h:aqara:camera_hub_g3:-:*:*:*:*:*:*:* cpe:2.3:h:aqara:hub_m2:-:*:*:*:*:*:*:* cpe:2.3:h:aqara:hub_m3:-:*:*:*:*:*:*:* cpe:2.3:o:aqara:camera_hub_g3_firmware:4.1.9_0027:*:*:*:*:*:*:* cpe:2.3:o:aqara:hub_m2_firmware:4.3.6_0027:*:*:*:*:*:*:* cpe:2.3:o:aqara:hub_m3_firmware:4.3.6_0025:*:*:*:*:*:*:* |
|
| Vendors & Products |
Aqara camera Hub G3 Firmware
Aqara hub M2 Firmware Aqara hub M3 Firmware |
Thu, 11 Dec 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Aqara
Aqara camera Hub G3 Aqara hub M2 Aqara hub M3 |
|
| Vendors & Products |
Aqara
Aqara camera Hub G3 Aqara hub M2 Aqara hub M3 |
Thu, 11 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-94 | |
| Metrics |
cvssV3_1
|
Wed, 10 Dec 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Aqara Hub devices including Camera Hub G3 4.1.9_0027, Hub M2 4.3.6_0027, and Hub M3 4.3.6_0025 contain an undocumented remote access mechanism enabling unrestricted remote command execution. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-12-11T15:39:29.906Z
Reserved: 2025-11-18T00:00:00.000Z
Link: CVE-2025-65294
Updated: 2025-12-11T15:35:18.316Z
Status : Analyzed
Published: 2025-12-10T22:16:27.033
Modified: 2025-12-17T19:51:48.547
Link: CVE-2025-65294
No data.
OpenCVE Enrichment
Updated: 2025-12-11T21:38:06Z