📦 Furbo 360 Dog Camera Firmware

by Furbo

🔍 What is Furbo 360 Dog Camera Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-11649

HIGH CVSS 7.0 Oct 12, 2025

This vulnerability allows attackers with local access to exploit a hard-coded password in the Root Account Handler component of Tomofun Furbo pet cameras. This could enable unauthorized root access to...

CVE-2025-11648

MEDIUM CVSS 5.6 Oct 12, 2025

This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in Tomofun Furbo 360 and Furbo Mini pet cameras via their GATT Interface URL Handler. Attackers can potentially make the device's ...

CVE-2025-11646

MEDIUM CVSS 6.3 Oct 12, 2025

This vulnerability allows attackers on the same local network to bypass access controls in Tomofun Furbo pet cameras via the GATT Service, potentially accessing sensitive device information. It affect...

CVE-2025-11642

MEDIUM CVSS 4.0 Oct 12, 2025

A denial-of-service vulnerability exists in Tomofun Furbo 360 and Furbo Mini pet cameras through their Registration Handler component. Physical access to the device is required for exploitation, makin...

CVE-2025-11638

MEDIUM CVSS 4.3 Oct 12, 2025

A vulnerability in Tomofun Furbo 360 and Furbo Mini pet cameras allows attackers on the same local network to cause denial of service by exploiting an unknown function in the Bluetooth Handler compone...

CVE-2025-11637

MEDIUM CVSS 4.3 Oct 12, 2025

A race condition vulnerability exists in the Audio Handler component of Tomofun Furbo 360 devices up to firmware version FB0035_FW_036. This allows remote attackers to potentially manipulate audio fun...

CVE-2025-11636

MEDIUM CVSS 5.6 Oct 12, 2025

This CVE describes a server-side request forgery (SSRF) vulnerability in Tomofun Furbo 360 pet cameras up to firmware version FB0035_FW_036. Attackers can exploit the Account Handler component to make...

CVE-2025-11635

MEDIUM CVSS 4.3 Oct 12, 2025

The Tomofun Furbo 360 pet camera has a file upload vulnerability that allows attackers to cause resource consumption (denial of service) through remote exploitation. This affects all devices running f...