Skip to main content

CVE-2025-3653

7.3
HIGHCVSS v3.1 Base Score
0.08%
LOW RiskEPSS (23rd percentile)

Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an improper access control vulnerability that allows unauthorized device manipulation by accepting arbitrary serial numbers without ownership verification. Attackers can control any device by sending serial numbers to device control APIs to change feeding schedules, trigger manual feeds, access camera feeds, and modify device settings without authorization checks.

Published: 1/4/2026
Modified: 2/3/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

7.3HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

EPSS Score (Exploitation Probability)

0.08%LOW Exploitation Risk
23rd percentile

This vulnerability has a 0.08% probability of being exploited in the next 30 days, ranking higher than 23% of all scored CVEs.

CWE Classification

Related Vulnerabilities

Same Weakness Type(CWE-612)

Similar SeverityHIGH