CVE-2020-10278 PUBLISHED CVSS 6.099999904632568 MEDIUM

The BIOS onboard MiR's Computer is not protected by password, therefore, it allows a Bad Operator to modify settings such as boot order. This can be leveraged by a Malicious operator to boot from a Live Image.

EPSS 0.22% · 44.7th percentile

Risk Scores

CVSS v3.0
6.099999904632568
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:H
EPSS Score
0.22%
44.7th percentile

Affected Products

VendorProductVersions
uvd-robotsuvd_robots_firmware0
aliasroboticsmir500_firmware0
mobile-industrial-roboticser200_firmware0
enabled-roboticser-one_firmware0
aliasroboticsmir1000_firmware0
Mobile Industrial Robots A/SMiR100v2.8.1.1 and before
enabled-roboticser-lite_firmware0
aliasroboticsmir250_firmware0
enabled-roboticser-flex_firmware0
aliasroboticsmir100_firmware0
aliasroboticsmir200_firmware0

Timeline

References

Open in Interactive Console →