CVE-2018-17931

If an attacker has physical access to the VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662. Prior versions may also be affected) they may be able to alter scripts, which may allow code execution with root privileges.
References
Link Resource
https://ics-cert.us-cert.gov/advisories/ICSA-18-114-01 Third Party Advisory US Government Resource
https://ics-cert.us-cert.gov/advisories/ICSA-18-114-01 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:vecna:vgo_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:vecna:vgo_firmware:3.0.3.53662:*:*:*:*:*:*:*
cpe:2.3:h:vecna:vgo:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:55

Type Values Removed Values Added
References () https://ics-cert.us-cert.gov/advisories/ICSA-18-114-01 - Third Party Advisory, US Government Resource () https://ics-cert.us-cert.gov/advisories/ICSA-18-114-01 - Third Party Advisory, US Government Resource

Information

Published : 2018-10-30 21:29

Updated : 2024-11-21 03:55


NVD link : CVE-2018-17931

Mitre link : CVE-2018-17931

CVE.ORG link : CVE-2018-17931


JSON object : View

Products Affected

vecna

  • vgo
  • vgo_firmware
CWE
CWE-284

Improper Access Control