Описание
The authentication implementation on the xArm controller has very low entropy, making it vulnerable to a brute-force attack. There is no mechanism in place to mitigate or lockout automated attempts to gain access.
Ссылки
- Issue TrackingThird Party Advisory
- Issue TrackingThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.5.0 (включая)
Одновременно
cpe:2.3:o:ufactory:xarm_5_lite_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ufactory:xarm_5_lite:-:*:*:*:*:*:*:*
EPSS
Процентиль: 58%
0.0037
Низкий
9.4 Critical
CVSS3
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-307
CWE-331
Связанные уязвимости
github
больше 3 лет назад
The authentication implementation on the xArm controller has very low entropy, making it vulnerable to a brute-force attack. There is no mechanism in place to mitigate or lockout automated attempts to gain access.
EPSS
Процентиль: 58%
0.0037
Низкий
9.4 Critical
CVSS3
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-307
CWE-331