CVE-2025-55637: Reolink Smart 2k+ Plug-In Wi-Fi Video Doorbell With Chime Firmware
Critical severity, CVSS 9.8. EPSS: 1.7% chance of exploitation in the next 30 days.
Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 was discovered to contain a command injection vulnerability via the setddns_pip_system() function.
Affected products
- Reolink Smart 2k+ Plug-In Wi-Fi Video Doorbell With Chime Firmware: version 3.0.0.4662_2503122283 only
Published 2025-08-22. Last modified 2026-06-17.