RVD#2560: Unprotected intellectual property in Mobile Industrial Robots (MiR) controllers
Vulnerability Description
MiR controllers across firmware versions 2.8.1.1 and before do not encrypt or protect in any way the intellectual property artifacts installed in the robots. This flaw allows attackers with access to the robot or the robot network (while in combination with other flaws) to retrieve and easily exfiltrate all installed intellectual property and data.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-10273
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Víctor Mayoral Vilches (Alias Robotics)
More from Mobile Industrial Robots A/S
View All →Affected Vendor
Mobile Industrial Robots A/S
View all reports →