📦 Lares Firmware

by Kseniasecurity

🔍 What is Lares Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-15114

CRITICAL CVSS 9.8 Dec 30, 2025

This critical vulnerability in Ksenia Security Lares 4.0 Home Automation version 1.6 exposes the alarm system PIN in server responses after authentication. Attackers can retrieve this PIN to bypass se...

CVE-2025-15111

CRITICAL CVSS 9.8 Dec 30, 2025

Ksenia Security Lares 4.0 Home Automation version 1.6 contains hardcoded default administrative credentials. Attackers can use these weak default credentials to gain full administrative control of the...

CVE-2025-15113

CRITICAL CVSS 9.3 Dec 30, 2025

Ksenia Security Lares 4.0 Home Automation version 1.6 contains an unprotected endpoint that allows authenticated attackers to upload MPFS File System binary images. This enables overwriting flash prog...

CVE-2025-15112

MEDIUM CVSS 5.4 Dec 30, 2025

This vulnerability in Ksenia Security Lares 4.0 version 1.6 allows attackers to craft malicious links that redirect authenticated users to arbitrary external websites via manipulation of the 'redirect...