Vulnerability Description
The Carlson VASCO-B GNSS Receiver lacks an authentication mechanism, allowing an attacker with network access to directly access and modify its configuration and operational functions without needing credentials.
CVSS Score
CRITICAL
Related Weaknesses (CWE)
References
- https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-11
- https://www.carlsonsw.com/support-and-training/
- https://www.cve.org/CVERecord?id=CVE-2026-3893
FAQ
What is CVE-2026-3893?
CVE-2026-3893 is a vulnerability with a CVSS score of 9.4 (CRITICAL). The Carlson VASCO-B GNSS Receiver lacks an authentication mechanism, allowing an attacker with network access to directly access and modify its configuration and operational functions without needin...
How severe is CVE-2026-3893?
CVE-2026-3893 has been rated CRITICAL with a CVSS base score of 9.4/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2026-3893?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.