CVE-2025-45466: High severity Unitree Go1 vulnerability
Published Jul 25, 2025
·Updated
Unitree Go1 <= Go120220511 is vulnerale to Incorrect Access Control due to authentication credentials being hardcoded in plaintext.
Affected Software
3 affected components
Unitree Go1<=Go1_2022_05_11
All of the following
Unitree Go1 Firmware
Unitree Go1
Event History
Jul 25, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-45466?
CVE-2025-45466 is classified as a high-severity vulnerability due to its risk of unauthorized access.
2
How do I fix CVE-2025-45466?
To fix CVE-2025-45466, update to a version of Unitree Go1 that does not have hardcoded authentication credentials.
3
What kind of vulnerability is CVE-2025-45466?
CVE-2025-45466 is an Incorrect Access Control vulnerability caused by hardcoded plaintext credentials.
4
What versions of Unitree Go1 are affected by CVE-2025-45466?
Unitree Go1 versions up to and including Go1_2022_05_11 are affected by CVE-2025-45466.
5
What are the potential impacts of CVE-2025-45466?
The potential impacts of CVE-2025-45466 include unauthorized access to sensitive information and control of the affected device.