universal-robots records
6 published records for vendor universal-robots.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-306 Missing Authentication for Critical Function2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-311 Missing Encryption of Sensitive Data1
- CWE-353 Missing Support for Integrity Check1
- CWE-798 Use of Hard-coded Credentials1
The weakness classes this vendor ships most often: where to look.
CWEAll records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2018-10635No exploit | In Universal Robots Robot Controllers Version CB 3.1, SW Version 3.4.5-100, ports 30001/TCP to 30003/TCP listen for arbitrary URScript code universal-robots · cb3.1 firmware · CWE-306 | Critical9.8 | — | 5.1% | Jul 11, 2018 |
40Plan | CVE-2018-10633No exploit | Universal Robots Robot Controllers Version CB 3.1, SW Version 3.4.5-100 utilizes hard-coded credentials that may allow an attacker to reset universal-robots · cb3.1 firmware · CWE-798 | Critical9.8 | — | 1.8% | Jul 11, 2018 |
37Monitor | CVE-2020-10265No exploit | RVD#1443: UR dashboard server enables unauthenticated remote control of core robot functionsuniversal-robots · ur software · CWE-306 | Critical9.4 | — | 1.5% | Apr 6, 2020 |
35Monitor | CVE-2020-10264No exploit | RTDE Interface allows unauthenticated reading of robot data and unauthenticated writing of registers and outputsuniversal-robots · ur software · CWE-200 | High8.8 | — | 0.6% | Apr 6, 2020 |
32Monitor | CVE-2020-10266No exploit | RVD#1487: No integrity checks on UR+ platform artifacts when installed in the robotuniversal-robots · ur\+ · CWE-353 | High8.1 | — | 0.5% | Apr 6, 2020 |
30Monitor | CVE-2020-10267No exploit | RVD#1489: Unprotected intelectual property in Universal Robots controller CB 3.1 across firmware versionsuniversal-robots · ur software · CWE-311 | High7.5 | — | 1.0% | Apr 6, 2020 |
- CVE-2018-1063541Plan
In Universal Robots Robot Controllers Version CB 3.1, SW Version 3.4.5-100, ports 30001/TCP to 30003/TCP listen for arbitrary URScript code
CriticalCVSS 9.8No exploitEPSS 5%universal-robots · cb3.1 firmwareJul 11, 2018
- CVE-2018-1063340Plan
Universal Robots Robot Controllers Version CB 3.1, SW Version 3.4.5-100 utilizes hard-coded credentials that may allow an attacker to reset
CriticalCVSS 9.8No exploitEPSS 2%universal-robots · cb3.1 firmwareJul 11, 2018
- CVE-2020-1026537Monitor
RVD#1443: UR dashboard server enables unauthenticated remote control of core robot functions
CriticalCVSS 9.4No exploitEPSS 1%universal-robots · ur softwareApr 6, 2020
- CVE-2020-1026435Monitor
RTDE Interface allows unauthenticated reading of robot data and unauthenticated writing of registers and outputs
HighCVSS 8.8No exploitEPSS 1%universal-robots · ur softwareApr 6, 2020
- CVE-2020-1026632Monitor
RVD#1487: No integrity checks on UR+ platform artifacts when installed in the robot
HighCVSS 8.1No exploitEPSS 1%universal-robots · ur\+Apr 6, 2020
- CVE-2020-1026730Monitor
RVD#1489: Unprotected intelectual property in Universal Robots controller CB 3.1 across firmware versions
HighCVSS 7.5No exploitEPSS 1%universal-robots · ur softwareApr 6, 2020