8.8
/ 10
HIGH
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
An unauthenticated attacker within proximity of the Meatmeet device can perform an unauthorized Over The Air (OTA) firmware upgrade using Bluetooth Low Energy (BLE), resulting in the firmware on the device being overwritten with the attacker's code. As the device does not perform checks on upgrades, this results in Remote Code Execution (RCE) and the victim losing complete access to the Meatmeet.
AI Analysis
Unauthenticated attackers can perform unauthorized Over The Air (OTA) firmware upgrades using Bluetooth Low Energy (BLE), resulting in Remote Code Execution (RCE).
Basic Information
ID
CVE-2025-65824
Source
mitre
Published
Dec 10, 2025 at 00:00
Modified
Dec 11, 2025 at 20:35
Affected Product
Vendor
Meatmeet Manufacturer
Product
Meatmeet
Version
n/a
Affected Versions
n/a n/a n/a
CWE Classification
AI Assessment
AI Score
8.8 / 10
AI Severity
High
Vendor
Meatmeet Manufacturer
Product
Meatmeet
Version
n/a