Vulnerabilities > Kuka

DATE CVE VULNERABILITY TITLE RISK
2022-08-10 CVE-2022-2242 Missing Authentication for Critical Function vulnerability in Kuka Systemsoftware V/Kss
The KUKA SystemSoftware V/KSS in versions prior to 8.6.5 is prone to improper access control as an unauthorized attacker can directly read and write robot configurations when access control is not available or not enabled (default).
network
low complexity
kuka CWE-306
critical
9.8
2022-05-26 CVE-2021-33014 Use of Hard-coded Credentials vulnerability in Kuka KR C4 Firmware and KSS
An attacker can gain VxWorks Shell after login due to hard-coded credentials on a KUKA KR C4 control software for versions prior to 8.7 or any product running KSS.
network
low complexity
kuka CWE-798
8.8
2022-05-26 CVE-2021-33016 Use of Hard-coded Credentials vulnerability in Kuka KR C4 Firmware and KSS
An attacker can gain full access (read/write/delete) to sensitive folders due to hard-coded credentials on KUKA KR C4 control software for versions prior to 8.7 or any product running KSS.
network
low complexity
kuka CWE-798
critical
9.8
2022-02-24 CVE-2020-10635 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in Kuka SIM PRO 3.1
Simulation models for KUKA.Sim Pro version 3.1 are hosted by a server maintained by KUKA.
network
low complexity
kuka CWE-924
4.3
2020-11-06 CVE-2020-10292 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Kuka Visual Components Network License Server 2.0.8
Visual Components (owned by KUKA) is a robotic simulator that allows simulating factories and robots in order toimprove planning and decision-making processes.
network
low complexity
kuka CWE-119
8.2
2020-11-06 CVE-2020-10291 Missing Authentication for Critical Function vulnerability in Kuka Visual Components Network License Server 2.0.8
Visual Components (owned by KUKA) is a robotic simulator that allows simulating factories and robots in order toimprove planning and decision-making processes.
network
low complexity
kuka CWE-306
7.5
2020-06-16 CVE-2020-10268 Unspecified vulnerability in Kuka KR C4 Firmware
Critical services for operation can be terminated from windows task manager, bringing the manipulator to a halt.
low complexity
kuka
6.1