Description
CubeSpace CW0057 Reaction Wheel firmware versions prior to 5.0.20 are vulnerable to an Improper Verification of Cryptographic Signature vulnerability. This could allow an attacker with physical access to the product to upload arbitrary malicious firmware to the device without authentication.
Published: 2026-07-02
Score: 3.3 Low
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

CubeSpace CW0057 Reaction Wheel firmware prior to version 5.0.20 validates firmware updates with a CRC‑32 check, which verifies image integrity but does not verify its source. This flaw (CWE‑347, Improper Verification of Cryptographic Signature) allows an attacker with direct physical access to upload arbitrary firmware, potentially altering the device’s behavior in an unauthenticated manner. The vulnerability does not support remote exploitation and can only be exercised by someone who can physically interact with the unit.

Affected Systems

The flaw affects CubeSpace CW0057 Reaction Wheels running firmware versions earlier than 5.0.20. Firmware 5.0.20 and later provide optional cryptographic secure boot; activation of the fully immutable signed‑boot mode is required to enforce signature verification and eliminate the vulnerability.

Risk and Exploitability

The CVSS score of 3.3 and an EPSS score of <1% indicate low overall risk, and the vulnerability is not listed in the CISA KEV catalog. Physical access is a prerequisite for exploitation, and a bootloader that can reload known‑good CubeSpace‑supplied firmware exists, so an affected unit cannot be rendered permanently inoperable. Nonetheless, updating the firmware or enabling signed‑boot further mitigates the risk.

Generated by OpenCVE AI on July 21, 2026 at 10:57 UTC.

Remediation

Vendor Solution

CubeSpace has released the following firmware versions for users to enable: Firmware version 5.0.20. Firmware version 5.0.20 introduces the capability for cryptographically verified secure boot; however, this protection is not enabled by default. Users must activate signed‑boot functionality, particularly the fully immutable mode, to achieve full security. CubeSpace acknowledges the finding. The CW0057 reaction wheel authenticates firmware updates with a CRC-32 integrity check, which confirms image integrity but does not verify the source of an image. Exploitation requires direct physical access to the device and is not exploitable remotely. A device affected by this method remains recoverable: the bootloader operates independently of the application firmware and can reload known-good, CubeSpace-supplied images, so an affected unit cannot be permanently disabled by this method. Starting with firmware version 5.0.20, CubeSpace offers optional cryptographic secure boot of varying security levels which customers can enable. Given the physical-access prerequisite and the availability of recovery, CubeSpace assesses the practical risk as low.


OpenCVE Recommended Actions

  • Update the device to firmware version 5.0.20 or later and enable the fully immutable signed‑boot mode.
  • If a firmware upgrade cannot be performed immediately, use the bootloader’s recovery process to reinstall a known‑good CubeSpace‑supplied firmware image.
  • Restrict and monitor physical access to prevent unauthorized firmware modifications.

Generated by OpenCVE AI on July 21, 2026 at 10:57 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 06 Jul 2026 23:15:00 +0000

Type Values Removed Values Added
First Time appeared Cubespace
Cubespace cw0057 Reaction Wheel
Vendors & Products Cubespace
Cubespace cw0057 Reaction Wheel

Thu, 02 Jul 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 02 Jul 2026 19:15:00 +0000

Type Values Removed Values Added
Description CubeSpace CW0057 Reaction Wheel firmware versions prior to 5.0.20 are vulnerable to an Improper Verification of Cryptographic Signature vulnerability. This could allow an attacker with physical access to the product to upload arbitrary malicious firmware to the device without authentication.
Title Improper verification of cryptographic signature in CubeSpace CW0057 Reaction Wheel
Weaknesses CWE-347
References
Metrics cvssV4_0

{'score': 3.3, 'vector': 'CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N/E:P'}


Subscriptions

Cubespace Cw0057 Reaction Wheel
cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2026-07-02T19:07:38.419Z

Reserved: 2026-06-29T15:29:03.049Z

Link: CVE-2026-13743

cve-icon Vulnrichment

Updated: 2026-07-02T19:07:33.233Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-21T11:00:05Z

Weaknesses
  • CWE-347

    Improper Verification of Cryptographic Signature