CVE-2025-55623
MEDIUMCVSS 5.4/10EPSS 0.29%
Last modified
CVE-2025-55623 is a medium-severity vulnerability rated 5.4/10 on the CVSS scale. An issue in the lock screen component of Reolink v4.54.0.4.20250526 allows attackers to bypass authentication via using an ADB (Android Debug Bridge).. EPSS estimates a 0.29% chance of exploitation in the next 30 days.
Description
An issue in the lock screen component of Reolink v4.54.0.4.20250526 allows attackers to bypass authentication via using an ADB (Android Debug Bridge).
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Reolink | Reolink | 4.54.0.4.20250526 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2025-55623?
An issue in the lock screen component of Reolink v4.54.0.4.20250526 allows attackers to bypass authentication via using an ADB (Android Debug Bridge).
How severe is CVE-2025-55623?
CVE-2025-55623 has a CVSS score of 5.4/10 (MEDIUM severity). The EPSS model estimates a 0.29% probability of exploitation in the next 30 days.
How do I fix CVE-2025-55623?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-55618In Hyundai Navigation App STD5W.EUR.HMC.230516.afa908d, an a…7.3
- CVE-2025-55619Reolink v4.54.0.4.20250526 was discovered to contain a hardc…9.8
- CVE-2025-5562A vulnerability was found in PHPGurukul Curfew e-Pass Manage…9.8
- CVE-2025-55620A cross-site scripting (XSS) vulnerability in the valuateJav…6.1
- CVE-2025-55621An Insecure Direct Object Reference (IDOR) vulnerability in …6.5
- CVE-2025-55622Reolink v4.54.0.4.20250526 was discovered to contain a task …6.5
- CVE-2025-55624An intent redirection vulnerability in Reolink v4.54.0.4.202…5.3
- CVE-2025-55625An open redirect vulnerability in Reolink v4.54.0.4.20250526…6.3
- CVE-2025-55626An Insecure Direct Object Reference (IDOR) vulnerability in …5.3
- CVE-2025-55627Insufficient privilege verification in Reolink Smart 2K+ Plu…5.3
- CVE-2025-55629Insecure permissions in Reolink Smart 2K+ Plug-in Wi-Fi Vide…6.5
- CVE-2025-5563The WP-Addpub plugin for WordPress is vulnerable to SQL Inje…6.5
Are you affected by CVE-2025-55623?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
