CVE-2025-2394 | Ecovacs Mobile Application 3.3.0 on iOS/Android Alibaba Object Storage Service hard-coded credentials
A vulnerability has been found in Ecovacs Mobile Application 3.3.0 on iOS/Android and classified as problematic. This vulnerability affects unknown code of the component Alibaba Object Storage Service. The manipulation leads to hard-coded credentials.
This vulnerability was named CVE-2025-2394. It is possible to launch the attack on the physical device. There is no exploit available.