Vulnerability Details CVE-2020-10278
The BIOS onboard MiR's Computer is not protected by password, therefore, it allows a Bad Operator to modify settings such as boot order. This can be leveraged by a Malicious operator to boot from a Live Image.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 44.9%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 5.0
Products affected by CVE-2020-10278
-
cpe:2.3:h:aliasrobotics:mir1000:-
-
cpe:2.3:h:aliasrobotics:mir100:-
-
cpe:2.3:h:aliasrobotics:mir200:-
-
cpe:2.3:h:aliasrobotics:mir250:-
-
cpe:2.3:h:aliasrobotics:mir500:-
-
cpe:2.3:h:enabled-robotics:er-flex:-
-
cpe:2.3:h:enabled-robotics:er-lite:-
-
cpe:2.3:h:enabled-robotics:er-one:-
-
cpe:2.3:h:mobile-industrial-robotics:er200:-
-
cpe:2.3:h:uvd-robots:uvd_robots:-
-
cpe:2.3:o:aliasrobotics:mir1000_firmware:-
-
cpe:2.3:o:aliasrobotics:mir1000_firmware:2.8.1.1
-
cpe:2.3:o:aliasrobotics:mir100_firmware:-
-
cpe:2.3:o:aliasrobotics:mir100_firmware:2.8.1.1
-
cpe:2.3:o:aliasrobotics:mir200_firmware:-
-
cpe:2.3:o:aliasrobotics:mir200_firmware:2.8.1.1
-
cpe:2.3:o:aliasrobotics:mir250_firmware:-
-
cpe:2.3:o:aliasrobotics:mir250_firmware:2.8.1.1
-
cpe:2.3:o:aliasrobotics:mir500_firmware:-
-
cpe:2.3:o:aliasrobotics:mir500_firmware:2.8.1.1
-
cpe:2.3:o:enabled-robotics:er-flex_firmware:-
-
cpe:2.3:o:enabled-robotics:er-flex_firmware:2.8.1.1
-
cpe:2.3:o:enabled-robotics:er-lite_firmware:-
-
cpe:2.3:o:enabled-robotics:er-lite_firmware:2.8.1.1
-
cpe:2.3:o:enabled-robotics:er-one_firmware:-
-
cpe:2.3:o:enabled-robotics:er-one_firmware:2.8.1.1
-
cpe:2.3:o:mobile-industrial-robotics:er200_firmware:-
-
cpe:2.3:o:mobile-industrial-robotics:er200_firmware:2.8.1.1
-
cpe:2.3:o:uvd-robots:uvd_robots_firmware:-
-
cpe:2.3:o:uvd-robots:uvd_robots_firmware:2.8.1.1