Cleartext transmission without a cryptographic integrity check in operator control unit to robot UDP traffic in Teledyne FLIR Aware2 versions through 6.9.0.2 (PackBot) and 1.7.9 (FirstLook) allows adjacent unauthenticated attackers to intercept, hijack, or mod
Shenlong is analyzing...
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Teledyne FLIR | Aware2 | 0 ~ 6.9.0.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-55393 | 10.0 CRITICAL | Local File Inclusion in Teledyne FLIR Robots running Aware2 |
| CVE-2026-14984 | 9.4 CRITICAL | Cleartext HTTP for Control Traffic in Teledyne FLIR Robots running Aware2 |
| CVE-2026-55395 | 9.4 CRITICAL | Hardcoded Passwords in Teledyne FLIR Robots running Aware2 |
| CVE-2026-14983 | 7.1 HIGH | Missing Authentication in Teledyne FLIR Robots running Aware2 |
| CVE-2026-55394 | 5.3 MEDIUM | Unencrypted 802.11 Network in Teledyne FLIR Robots running Aware2 |
No comments yet