CVE-2025-41110
- EPSS 0.05%
- Veröffentlicht 22.10.2025 08:16:24
- Zuletzt bearbeitet 30.10.2025 17:48:46
Encrypted WiFi and SSH credentials were found in the Ghost Robotics Vision 60 v0.27.2 APK. This vulnerability allows an attacker to connect to the robot's WiFi and view all its data, as it runs on ROS 2 without default authentication. In addition, th...
CVE-2025-41109
- EPSS 0.04%
- Veröffentlicht 22.10.2025 08:15:42
- Zuletzt bearbeitet 31.10.2025 19:39:30
Ghost Robotics Vision 60 v0.27.2 includes, among its physical interfaces, three RJ45 connectors and a USB Type-C port. The vulnerability is due to the lack of authentication mechanisms when establishing connections through these ports. Specifically, ...
CVE-2025-41108
- EPSS 0.06%
- Veröffentlicht 22.10.2025 08:14:54
- Zuletzt bearbeitet 31.10.2025 19:45:12
The communication protocol implemented in Ghost Robotics Vision 60 v0.27.2 could allow an attacker to send commands to the robot from an external attack station, impersonating the control station (tablet) and gaining unauthorised full control of the ...