vecna records
5 published records for vendor vecna.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-284 Improper Access Control1
- CWE-285 Improper Authorization1
- CWE-522 Insufficiently Protected Credentials1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2018-8858No exploit | If an attacker has access to the firmware from the VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662.vecna · vgo firmware · CWE-522 | Critical9.8 | — | 1.2% | Oct 30, 2018 |
36Monitor | CVE-2018-8866No exploit | In Vecna VGo Robot versions prior to 3.0.3.52164, an attacker on an adjacent network could perform command injection.vecna · vgo firmware · CWE-78 | High8.8 | — | 2.1% | May 9, 2018 |
35Monitor | CVE-2018-17933No exploit | VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662.vecna · vgo firmware · CWE-285 | High8.8 | — | 1.2% | Oct 30, 2018 |
27Monitor | CVE-2018-17931No exploit | If an attacker has physical access to the VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662.vecna · vgo firmware · CWE-284 | Medium6.8 | — | 0.4% | Oct 30, 2018 |
26Monitor | CVE-2018-8860No exploit | In Vecna VGo Robot versions prior to 3.0.3.52164, an attacker may be able to capture firmware updates through the adjacent network.vecna · vgo firmware · CWE-200 | Medium6.5 | — | 0.7% | May 9, 2018 |
- CVE-2018-885839Monitor
If an attacker has access to the firmware from the VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662.
CriticalCVSS 9.8No exploitEPSS 1%vecna · vgo firmwareOct 30, 2018
- CVE-2018-886636Monitor
In Vecna VGo Robot versions prior to 3.0.3.52164, an attacker on an adjacent network could perform command injection.
HighCVSS 8.8No exploitEPSS 2%vecna · vgo firmwareMay 9, 2018
- CVE-2018-1793335Monitor
VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662.
HighCVSS 8.8No exploitEPSS 1%vecna · vgo firmwareOct 30, 2018
- CVE-2018-1793127Monitor
If an attacker has physical access to the VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662.
MediumCVSS 6.8No exploitEPSS 0%vecna · vgo firmwareOct 30, 2018
- CVE-2018-886026Monitor
In Vecna VGo Robot versions prior to 3.0.3.52164, an attacker may be able to capture firmware updates through the adjacent network.
MediumCVSS 6.5No exploitEPSS 1%vecna · vgo firmwareMay 9, 2018