Description
Cleartext transmission without a cryptographic integrity check in operator control unit to robot UDP traffic in Teledyne FLIR Aware2 versions through 6.9.0.2 (PackBot) and 1.7.9 (FirstLook) allows adjacent unauthenticated attackers to intercept, hijack, or modify control traffic against Teledyne FLIR PackBot and FirstLook robots running this software via sniffing or hijacking network traffic.
Published: 2026-10-01
Score: 8.5 High
EPSS: n/a
KEV: No
Impact: Unencrypted UDP control traffic enabling remote hijacking of robot commands
Action: Immediate Patch
AI Analysis

Impact

Cleartext transmission of operator control commands to robot UDP traffic allows an unauthenticated attacker to intercept, hijack, or modify control traffic. The lack of a cryptographic integrity check means that commands can be altered or replayed without detection, potentially causing the robot to perform unintended actions or be disabled.

Affected Systems

Teledyne FLIR Aware2 software, including PackBot (versions up to 6.9.0.2) and FirstLook (versions up to 1.7.9), is affected.

Risk and Exploitability

The vulnerability has a CVSS score of 8.5, indicating a high severity level. EPSS data is not available, but the ability to modify control traffic over an adjacent network suggests a relatively straightforward local attack. The issue is not listed in CISA's KEV catalog yet, but the impact on robot safety and mission integrity means it should be treated with urgency.

Generated by OpenCVE AI on October 1, 2026 at 21:49 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the latest Aware2 firmware update that adds encryption or integrity checks to UDP control traffic.
  • If an immediate update is not possible, isolate the robot’s control network by placing it in a dedicated VLAN and restrict UDP traffic to the operator control unit only.
  • Consider disabling or blocking the UDP control channel when it is not required for operation, using firewall rules to prevent unauthorized traffic.

Generated by OpenCVE AI on October 1, 2026 at 21:49 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 01 Oct 2026 21:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 01 Oct 2026 20:30:00 +0000

Type Values Removed Values Added
Description Cleartext transmission without a cryptographic integrity check in operator control unit to robot UDP traffic in Teledyne FLIR Aware2 versions through 6.9.0.2 (PackBot) and 1.7.9 (FirstLook) allows adjacent unauthenticated attackers to intercept, hijack, or modify control traffic against Teledyne FLIR PackBot and FirstLook robots running this software via sniffing or hijacking network traffic.
Title Unencrypted UDP Control Traffic in Teledyne FLIR Robots running Aware2
Weaknesses CWE-319
References
Metrics cvssV4_0

{'score': 8.5, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:H/SC:L/SI:H/SA:H'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: Mandiant

Published:

Updated: 2026-10-01T20:24:53.729Z

Reserved: 2026-06-16T19:45:37.214Z

Link: CVE-2026-55396

cve-icon Vulnrichment

Updated: 2026-10-01T20:24:48.663Z

cve-icon NVD

Status : Received

Published: 2026-10-01T21:17:21.973

Modified: 2026-10-01T21:17:21.973

Link: CVE-2026-55396

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-01T22:00:17Z

Weaknesses
  • CWE-319

    Cleartext Transmission of Sensitive Information