MinorCritical vulnerability
CVE-2026-85628 (CVSS 7.0)
NVD · officialPublished Sep 16, 2026Risk 23/100EPSS 0.1%
Transmission of the home Wi-Fi credentials without encryption during the pairing process between the DuoxMe application and VEO and VEO-XS Wi-Fi monitors, in versions prior to 4.3.4 of the application and 01.50.001 of the monitor firmware, allows an attacker on the Wi-Fi Direct network to intercept the network password.
Technical details
CVSS
7.0
AV:AdjacentAC:LowPR:NoneUI:Passive
Evidence and sources
This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.
Open primary source