Back to Database
Status published
Critical
CVE-2018-10633
Universal Robots Robot Controllers Version CB 3.1, SW Version 3.4.5-100...
Vulnerability Description
Universal Robots Robot Controllers Version CB 3.1, SW Version 3.4.5-100 utilizes hard-coded credentials that may allow an attacker to reset passwords for the controller.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2018-10633
Credits & Attribution
No credits recorded in the NVD database.
References
More from Universal Robots
View All →CVE-2020-10290
RVD#1495: Universal Robots URCaps execute with unbounded privileges
Medium
6.8
CVE-2020-10267
RVD#1489: Unprotected intelectual property in Universal Robots controller CB 3.1 across firmware versions
High
7.5
CVE-2020-10266
RVD#1487: No integrity checks on UR+ platform artifacts when installed in the robot
High
8.8
CVE-2020-10265
RVD#1443: UR dashboard server enables unauthenticated remote control of core robot functions
Critical
9.4
CVE-2018-10635
In Universal Robots Robot Controllers Version CB 3.1, SW Version...
Critical
9.8
Affected Vendor
Universal Robots
View all reports →Affected Software
Universal Robots Robot Controller version CB 3.1, SW Version 3.4.5-100
Vulnerable Versions:
Universal Robots Robot Controller version CB 3.1, SW Version 3.4.5-100
Timeline
Official Publish:
July 11th, 2018
Last Modified:
September 17th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H