CVE-2023-3104: Missing Authentication for Critical Function in Unitree Robotics A1
Lack of authentication vulnerability. An unauthenticated local user is able to see through the cameras using the web server due to the lack of any form of authentication.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-3104?
CVE-2023-3104 is a vulnerability that allows an unauthenticated local user to see through the cameras using the web server of Unitree Robotics A1 due to the lack of authentication.
How severe is CVE-2023-3104?
CVE-2023-3104 has a severity rating of 7.5, which is considered high.
What is the affected software of CVE-2023-3104?
The affected software of CVE-2023-3104 is Unitree A1 Firmware.
How can I fix CVE-2023-3104?
To fix CVE-2023-3104, it is recommended to apply the latest firmware updates provided by Unitree Robotics.
Where can I find more information about CVE-2023-3104?
More information about CVE-2023-3104 can be found at the following reference: https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-unitree-robotics-a1