- Description
- If an attacker has physical access to the VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662. Prior versions may also be affected) they may be able to alter scripts, which may allow code execution with root privileges.
- Source
- ics-cert@hq.dhs.gov
- NVD status
- Modified
CVSS 3.0
- Type
- Primary
- Base score
- 6.8
- Impact score
- 5.9
- Exploitability score
- 0.9
- Vector string
- CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- MEDIUM
CVSS 2.0
- Type
- Primary
- Base score
- 7.2
- Impact score
- 10
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:C/I:C/A:C
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:vecna:vgo_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F86E7111-175E-42B3-8E86-391E0984B1BA",
"versionEndIncluding": "3.0.3.52164"
},
{
"criteria": "cpe:2.3:o:vecna:vgo_firmware:3.0.3.53662:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "963BAE8B-59B4-4A28-82A6-8A9AF0F36B31"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:vecna:vgo:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "A169276B-CA9C-44CC-9F3C-4969DD304520"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
]