VYPR
Vendor

MiR

Products
5
CVEs
6
Across products
11
Status
Private

Products

5

Recent CVEs

6
  • CVE-2020-10279Jun 24, 2020
    risk 0.00cvss epss 0.01

    MiR robot controllers (central computation unit) makes use of Ubuntu 16.04.2 an operating system, Thought for desktop uses, this operating system presents insecure defaults for robots. These insecurities include a way for users to escalate their access beyond what they were…

  • CVE-2020-10269Jun 24, 2020
    risk 0.00cvss epss 0.01

    One of the wireless interfaces within MiR100, MiR200 and possibly (according to the vendor) other MiR fleet vehicles comes pre-configured in WiFi Master (Access Point) mode. Credentials to such wireless Access Point default to well known and widely spread SSID (MiR_RXXXX) and…

  • CVE-2020-10273Jun 24, 2020
    risk 0.00cvss epss 0.01

    MiR controllers across firmware versions 2.8.1.1 and before do not encrypt or protect in any way the intellectual property artifacts installed in the robots. This flaw allows attackers with access to the robot or the robot network (while in combination with other flaws) to…

  • CVE-2020-10270Jun 24, 2020
    risk 0.00cvss epss 0.02

    Out of the wired and wireless interfaces within MiR100, MiR200 and other vehicles from the MiR fleet, it's possible to access the Control Dashboard on a hardcoded IP address. Credentials to such wireless interface default to well known and widely spread users (omitted) and…

  • CVE-2020-10271Jun 24, 2020
    risk 0.00cvss epss 0.02

    MiR100, MiR200 and other MiR robots use the Robot Operating System (ROS) default packages exposing the computational graph to all network interfaces, wireless and wired. This is the result of a bad set up and can be mitigated by appropriately configuring ROS and/or applying…

  • CVE-2020-10272Jun 24, 2020
    risk 0.00cvss epss 0.02

    MiR100, MiR200 and other MiR robots use the Robot Operating System (ROS) default packages exposing the computational graph without any sort of authentication. This allows attackers with access to the internal wireless and wired networks to take control of the robot seamlessly.…