CVE-2026-57473
Awaiting Analysis
Awaiting Analysis - Queue
Brute-Force Credential Disclosure in Reolink Home Hub
Publication date: 2026-06-26
Last updated on: 2026-06-26
Assigner: Nozomi Networks Inc.
Description
Description
A vulnerability exists in the netclient and factory services of Reolink Home Hub (versions prior to v3.3.0.456_26031911) due to the possibility of brute-force cracking the credentials. This issue could allow attackers on the same local network to intercept traffic between the Hub and associated cameras and compromise the credentials of connected cameras.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| reolink | home_hub | to 3.3.0.456_26031911 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-1391 | The product uses weak credentials (such as a default key or hard-coded password) that can be calculated, derived, reused, or guessed by an attacker. |