Vulnerabilities > CVE-2020-10284 - Unspecified vulnerability in Ufactory Xarm Studio 1.3.0

047910
CVSS 9.1 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
ufactory
critical

Summary

No authentication is required to control the robot inside the network, moreso the latest available user manual shows an option that lets the user to add a password to the robot but as in xarm_studio 1.3.0 the option is missing from the menu. Assuming manual control, even by forcefully removing the current operator from an active session.

Vulnerable Configurations

Part Description Count
Application
Ufactory
1