Back

HIGH

Authentication Bypass by Spoofing in Unitree Robotics A1

Published Nov 22, 2023

Description

Authentication bypass vulnerability, the exploitation of which could allow a local attacker to perform a Man-in-the-Middle (MITM) attack on the robot's camera video stream. In addition, if a MITM attack is carried out, it is possible to consume the robot's resources, which could lead to a denial-of-service (DOS) condition.

Affected products

Remediation

Vendor solution

The affected robot is in the discontinuation stage. The manufacturer recommends changing the default network password, as well as disabling network functions if they are not required.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner INCIBE
Published Nov 22, 2023
Updated Aug 2, 2024
Reserved Jun 5, 2023
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner INCIBE
Published Nov 22, 2023
Updated Aug 2, 2024
Exploited since n/a
EUVD-2023-43790