← Back

CVE-2026-3893

nvd nist
Published: Apr 28, 2026Modified: Jun 17, 2026Deferred

JSON object

Loading...
9.4
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
Exploitability: 3.9 / Impact: 5.5
Source: ics-cert@hq.dhs.gov (Secondary)

Description

The Carlson VASCO-B GNSS Receiver lacks an authentication mechanism, allowing an attacker with network access to directly access and modify its configuration and operational functions without needing credentials.

Timeline

No history available yet.