← Back

CVE-2020-10265

nvd nist
Published: Apr 6, 2020Modified: Jun 17, 2026

JSON object

Loading...
9.4
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
Exploitability: 3.9 / Impact: 5.5
Source: NVD

Description

Universal Robots Robot Controllers Version CB2 SW Version 1.4 upwards, CB3 SW Version 3.0 and upwards, e-series SW Version 5.0 and upwards expose a service called DashBoard server at port 29999 that allows for control over core robot functions like starting/stopping programs, shutdown, reset safety and more. The DashBoard server is not protected by any kind of authentication or authorization.

Affected (3)

Ur Software
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 3.0.14989 to 3.3.3.292
Running on/withPlatform Versions
Universal Robots
Ur3
All versions
Configuration B
1 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
From 1.4
Running on/withPlatform Versions
Universal Robots
Ur10
All versions
Universal Robots
Ur5
All versions
Configuration C
1 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
From 5.0
Running on/withPlatform Versions
Universal Robots
Ur10e
All versions
Universal Robots
Ur3e
All versions
Universal Robots
Ur5e
All versions

Timeline

No history available yet.