aliasbot

Results 17 issues of aliasbot

```yaml { "id": 39, "title": "RVD#39: Remote Firmware Upgrade in Alpha 1S As", "type": "vulnerability", "description": "It is possible to remotely upgrade the Alpha 1S firmware by sending an undocumented...

robot
severity: critical
state: new
vulnerability
vendor: UBTech Robotics
robot: Alpha 1S
Ubtech Robotics

```yaml { "id": 10, "title": "RVD#10: Relative Path Traversal vulnerability in SREA-01 and SREA-50", "type": "vulnerability", "description": " Relative Path Traversal vulnerability in SREA-01 and SREA-50 legacy remote monitoring tools...

components hardware
severity: critical
vulnerability
vendor: ABB
review

```yaml { "id": 12, "title": "RVD#12: Authentication bypass vulnerability in SoftBank's Pepper and NAO robots's web console", "type": "vulnerability", "description": " An authentication bypass vulnerability in SoftBank's Pepper and NAO...

robot
vulnerability
robot: Pepper
vendor: Softbank Robotics
robot: NAO
severity: high

```yaml { "id": 14, "title": "RVD#14: Insecure transport in SoftBank's Pepper and NAO robot's Qi Protocol", "type": "vulnerability", "description": "Insecure transport in SoftBank's Pepper and NAO robot's Qi Protocol could...

robot
vulnerability
robot: Pepper
vendor: Softbank Robotics
robot: NAO
severity: high

```yaml id: 87 title: 'RVD#87: Unauthenticated registration/unregistration with ROS Master API' type: vulnerability description: "This vulnerability has previously been disclosed in a variety of peer-reviewed\ \ articles. Among them and...

robot component: ROS
components software
vulnerability
severity: high

```yaml id: 68 title: 'RVD#68: Improper Access Control on IRB140''s FlexPendant' type: vulnerability description: "Researchers found some issues in the compliance tool that comes with\ \ the FlexPendant software development...

components hardware
severity: medium
vulnerability
vendor: ABB
robot component: IRB140's flex pendant
triage

```yaml id: 63 title: 'RVD#63: Weak cryptography' type: vulnerability description: "An attacker with read-only file system access can tamper with the UAS\ \ configuration, changing the privileges of existing accounts...

components hardware
severity: critical
vulnerability
vendor: ABB
robot component: IRB140's main computer
triage

```yaml id: 65 title: 'RVD#65: Stack overflow on RobAPI request' type: vulnerability description: 'We found an exploitable memory error (a textbook stack-based buffer overflow) in the code that receives RobAPI...

components hardware
severity: critical
state: new
vulnerability
vendor: ABB
severity: high
robot component: IRB140's main computer
triage

```yaml { "id": 102, "title": "RVD#102: OTA OpenSSH version vulnerable to user enumeration attacks", "type": "vulnerability", "description": "The OpenSSH server version 7.6p1 is vulnerable to user enumeration attacks by timing.",...

robot
severity: medium
vulnerability
vendor: Acutronic Robotics
robot: MARA

```yaml { "id": 101, "title": "RVD#101: OTA OpenSSH Linux distribution version disclosure", "type": "vulnerability", "description": "The OpenSSH server discloses the distribution name (Ubuntu) being used in the server in the...

robot
severity: medium
vulnerability
vendor: Acutronic Robotics
robot: MARA