Vulnerability Description
Authentication bypass vulnerability, the exploitation of which could allow a local attacker to perform a Man-in-the-Middle (MITM) attack on the robot's camera video stream. In addition, if a MITM attack is carried out, it is possible to consume the robot's resources, which could lead to a denial-of-service (DOS) condition.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Unitree | A1 Firmware | - |
| Unitree | A1 | 1.16 |
Related Weaknesses (CWE)
References
- https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-unitVendor Advisory
- https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-unitVendor Advisory
FAQ
What is CVE-2023-3103?
CVE-2023-3103 is a vulnerability with a CVSS score of 8.0 (HIGH). Authentication bypass vulnerability, the exploitation of which could allow a local attacker to perform a Man-in-the-Middle (MITM) attack on the robot's camera video stream. In addition, if a MITM atta...
How severe is CVE-2023-3103?
CVE-2023-3103 has been rated HIGH with a CVSS base score of 8.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-3103?
Check the references section above for vendor advisories and patch information. Affected products include: Unitree A1 Firmware, Unitree A1.