An issue discovered in the Tuya Smart Life App 5.6.1 allows attackers to unprivileged control Matter devices via the Matter protocol.
References
Link | Resource |
---|---|
http://tuya.com | Product |
https://archive.org/details/tuya-matter-fabric-bug/mode/2up | Third Party Advisory |
Configurations
History
02 Oct 2025, 19:13
Type | Values Removed | Values Added |
---|---|---|
References | () http://tuya.com - Product | |
References | () https://archive.org/details/tuya-matter-fabric-bug/mode/2up - Third Party Advisory | |
First Time |
Tuya
Tuya tuya |
|
CPE | cpe:2.3:a:tuya:tuya:5.6.1:*:*:*:*:*:*:* |
17 Sep 2025, 14:18
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-250 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.1 |
16 Sep 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-09-16 19:15
Updated : 2025-10-02 19:13
NVD link : CVE-2025-56557
Mitre link : CVE-2025-56557
CVE.ORG link : CVE-2025-56557
JSON object : View
Products Affected
tuya
- tuya
CWE
CWE-250
Execution with Unnecessary Privileges