Kapsch

Ris-9260 Firmware

6 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.09%
  • Veröffentlicht 26.08.2025 00:00:00
  • Zuletzt bearbeitet 22.10.2025 15:15:31

Incorrect access control in the EEPROM component of Kapsch TrafficCom RIS-9160 & RIS-9260 Roadside Units (RSUs) v3.2.0.829.23, v3.8.0.1119.42, and v4.6.0.1211.28 allows attackers to replace password hashes stored in the EEPROM with hashes of their ow...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 26.08.2025 00:00:00
  • Zuletzt bearbeitet 22.10.2025 15:15:32

Incorrect access control in the SPI Flash Chip of Kapsch TrafficCom RIS-9160 & RIS-9260 Roadside Units (RSUs) v3.2.0.829.23, v3.8.0.1119.42, and v4.6.0.1211.28 allows physically proximate attackers to arbitrarily modify SPI flash regions, leading to ...

Exploit
  • EPSS 0.1%
  • Veröffentlicht 26.08.2025 00:00:00
  • Zuletzt bearbeitet 22.10.2025 15:15:32

Kapsch TrafficCom RIS-9160 & RIS-9260 Roadside Units (RSUs) v3.2.0.829.23, v3.8.0.1119.42, and v4.6.0.1211.28 was discovered to contain an unauthenticated EFI shell which allows attackers to execute arbitrary code or escalate privileges during the bo...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 26.08.2025 00:00:00
  • Zuletzt bearbeitet 22.10.2025 15:15:32

Kapsch TrafficCom RIS-9160 & RIS-9260 Roadside Units (RSUs) v3.2.0.829.23, v3.8.0.1119.42, and v4.6.0.1211.28 were discovered to lack SPI Protected Range Registers (PRRs), allowing attackers with software running on the system to modify SPI flash in ...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 26.08.2025 00:00:00
  • Zuletzt bearbeitet 22.10.2025 15:15:32

Kapsch TrafficCom RIS-9260 RSU LEO v3.2.0.829.23, v3.8.0.1119.42, and v4.6.0.1211.28 were discovered to contain Android Debug Bridge (ADB) pre-installed (/mnt/c3platpersistent/opt/platform-tools/adb) and enabled by default, allowing unauthenticated r...

Exploit
  • EPSS 0.21%
  • Veröffentlicht 26.08.2025 00:00:00
  • Zuletzt bearbeitet 22.10.2025 15:15:32

Kapsch TrafficCom RIS-9160 & RIS-9260 Roadside Units (RSUs) v3.2.0.829.23, v3.8.0.1119.42, and v4.6.0.1211.28 were discovered to lack secure password requirements for its BIOS Supervisor and User accounts, allowing attackers to bypass authentication ...