Vulnerabilities (CVE)

Filtered by vendor Kuka
Angry Yack Logo
Total 7 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-2242 1 Kuka 1 Systemsoftware V\/kss 2024-11-21 N/A 9.8 CRITICAL
The KUKA SystemSoftware V/KSS in versions prior to 8.6.5 is prone to improper access control as an unauthorized attacker can directly read and write robot configurations when access control is not available or not enabled (default).
CVE-2021-33016 1 Kuka 3 Kr C4, Kr C4 Firmware, Kss 2024-11-21 5.0 MEDIUM 9.8 CRITICAL
An attacker can gain full access (read/write/delete) to sensitive folders due to hard-coded credentials on KUKA KR C4 control software for versions prior to 8.7 or any product running KSS.
CVE-2021-33014 1 Kuka 3 Kr C4, Kr C4 Firmware, Kss 2024-11-21 5.0 MEDIUM 8.8 HIGH
An attacker can gain VxWorks Shell after login due to hard-coded credentials on a KUKA KR C4 control software for versions prior to 8.7 or any product running KSS.
CVE-2020-10635 1 Kuka 1 Sim Pro 2024-11-21 4.3 MEDIUM 4.3 MEDIUM
Simulation models for KUKA.Sim Pro version 3.1 are hosted by a server maintained by KUKA. When these devices request a model, the server transmits the model in plaintext.
CVE-2020-10292 1 Kuka 1 Visual Components Network License Server 2024-11-21 5.0 MEDIUM 8.2 HIGH
Visual Components (owned by KUKA) is a robotic simulator that allows simulating factories and robots in order toimprove planning and decision-making processes. Visual Components software requires a special license which can beobtained from a network license server. The network license server binds to all interfaces (0.0.0.0) and listensfor packets over UDP port 5093. No authentication/authorization is required in order to communicate with theserver. The protocol being used is a property protocol ...

Show More

CVE-2020-10291 1 Kuka 1 Visual Components Network License Server 2024-11-21 5.0 MEDIUM 7.5 HIGH
Visual Components (owned by KUKA) is a robotic simulator that allows simulating factories and robots in order toimprove planning and decision-making processes. Visual Components software requires a special license which can beobtained from a network license server. The network license server binds to all interfaces (0.0.0.0) and listensfor packets over UDP port 5093. No authentication/authorization is required in order to communicate with theserver. The protocol being used is a property protocol ...

Show More

CVE-2020-10268 1 Kuka 2 Kr C4, Kr C4 Firmware 2024-11-21 3.6 LOW 6.1 MEDIUM
Critical services for operation can be terminated from windows task manager, bringing the manipulator to a halt. After this a Re-Calibration of the brakes needs to be performed. Be noted that this only can be accomplished either by a Kuka technician or by Kuka issued calibration hardware that interfaces with the manipulator furthering the delay and increasing operational costs.