There is no mechanism in place to prevent a bad operator to boot from a live OS image, this can lead to extraction of sensible files (such as the shadow file) or privilege escalation by manually adding a new user with sudo privileges on the machine.
CVSS Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:HEasyrobotics Er200
HWEasyroboticsall versionsEasyrobotics Er200 Firmware
OSEasyroboticsall versionsEasyrobotics Er Flex
HWEasyroboticsall versionsEasyrobotics Er Flex Firmware
OSEasyroboticsall versionsEasyrobotics Er Lite
HWEasyroboticsall versionsEasyrobotics Er Lite Firmware
OSEasyroboticsall versionsEasyrobotics Er One
HWEasyroboticsall versionsEasyrobotics Er One Firmware
OSEasyroboticsall versionsMobile Industrial Robots Mir100
HWMobile-Industrial-Robotsall versionsMobile Industrial Robots Mir1000
HWMobile-Industrial-Robotsall versionsMobile Industrial Robots Mir1000 Firmware
OSMobile-Industrial-Robotsall versionsMobile Industrial Robots Mir100 Firmware
OSMobile-Industrial-Robots≤ 2.8.1.1Mobile Industrial Robots Mir200
HWMobile-Industrial-Robotsall versionsMobile Industrial Robots Mir200 Firmware
OSMobile-Industrial-Robotsall versionsMobile Industrial Robots Mir250
HWMobile-Industrial-Robotsall versionsMobile Industrial Robots Mir250 Firmware
OSMobile-Industrial-Robotsall versionsMobile Industrial Robots Mir500
HWMobile-Industrial-Robotsall versionsMobile Industrial Robots Mir500 Firmware
OSMobile-Industrial-Robotsall versionsUvd Robots Uvd
HWUvd-Robotsall versionsUvd Robots Uvd Firmware
OSUvd-Robotsall versions
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
LPE
Related vulnerabilities
CVE-2020-10275CRITICAL9.8PL ✓same product
Słabe tokeny REST API w robotach MiR — przewidywalny mechanizm autoryzacji
CVE-2020-10276CRITICAL9.8PL ✓same product
Domyślne hasło PLC bezpieczeństwa w robotach MiR — wyłączenie zatrzymania awaryjnego
CVE-2020-10274HIGH7.1same product
The access tokens for the REST API are directly derived (sha256 and base64 encoding) from the publicly availab...
CVE-2020-10280HIGH7.5same product
The Apache server on port 80 that host the web interface is vulnerable to a DoS by spamming incomplete HTTP he...
CVE-2020-10269CRITICAL9.8PL ✓same vendor
Domyślne, jawne dane dostępowe do WiFi Access Point w robocie MiR