CVE-2018-17931
Summary
| CVE | CVE-2018-17931 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-10-30 21:29:00 UTC |
| Updated | 2019-10-09 23:37:00 UTC |
| Description | If an attacker has physical access to the VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662. Prior versions may also be affected) they may be able to alter scripts, which may allow code execution with root privileges. |
Risk And Classification
Problem Types: CWE-284
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Vecna | Vgo | - | All | All | All |
| Hardware | Vecna | Vgo | - | All | All | All |
| Operating System | Vecna | Vgo Firmware | 3.0.3.53662 | All | All | All |
| Operating System | Vecna | Vgo Firmware | 3.0.3.53662 | All | All | All |
| Operating System | Vecna | Vgo Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Vecna VGo Robot (Update A) | CISA | MISC | ics-cert.us-cert.gov | Third Party Advisory, US Government Resource |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.