Unvalidated pathnames in the web interface in Teledyne FLIR Aware2 versions through 6.9.0.2 (PackBot) and 1.7.9 (FirstLook) allows remote unauthenticated attackers to read configuration and security parameters on Teledyne FLIR PackBot and FirstLook robots runn
Shenlong is analyzing...
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Teledyne FLIR | Aware2 | 0 ~ 6.9.0.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-14984 | 9.4 CRITICAL | Cleartext HTTP for Control Traffic in Teledyne FLIR Robots running Aware2 |
| CVE-2026-55395 | 9.4 CRITICAL | Hardcoded Passwords in Teledyne FLIR Robots running Aware2 |
| CVE-2026-55396 | 8.5 HIGH | Unencrypted UDP Control Traffic in Teledyne FLIR Robots running Aware2 |
| CVE-2026-14983 | 7.1 HIGH | Missing Authentication in Teledyne FLIR Robots running Aware2 |
| CVE-2026-55394 | 5.3 MEDIUM | Unencrypted 802.11 Network in Teledyne FLIR Robots running Aware2 |
No comments yet