Vulnerability Details CVE-2020-10285
The authentication implementation on the xArm controller has very low entropy, making it vulnerable to a brute-force attack. There is no mechanism in place to mitigate or lockout automated attempts to gain access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 58.1%
CVSS Severity
CVSS v3 Score 9.4
CVSS v2 Score 7.5
Products affected by CVE-2020-10285
-
cpe:2.3:h:ufactory:xarm_5_lite:-
-
cpe:2.3:o:ufactory:xarm_5_lite_firmware:-
-
cpe:2.3:o:ufactory:xarm_5_lite_firmware:1.5.0