CVE-2020-10273: Aliasrobotics MIR1000 Firmware
High severity, CVSS 7.5. EPSS: 0.9% chance of exploitation in the next 30 days.
MiR controllers across firmware versions 2.8.1.1 and before do not encrypt or protect in any way the intellectual property artifacts installed in the robots. This flaw allows attackers with access to the robot or the robot network (while in combination with other flaws) to retrieve and easily exfiltrate all installed intellectual property and data.
Affected products
- Aliasrobotics MIR1000 Firmware: up to and including 2.8.1.1
- Aliasrobotics MIR100 Firmware: up to and including 2.8.1.1
- Aliasrobotics MIR200 Firmware: up to and including 2.8.1.1
- Aliasrobotics MIR250 Firmware: up to and including 2.8.1.1
- Aliasrobotics MIR500 Firmware: up to and including 2.8.1.1
- Enabled-Robotics Er-Flex Firmware: up to and including 2.8.1.1
- Enabled-Robotics Er-Lite Firmware: up to and including 2.8.1.1
- Enabled-Robotics Er-One Firmware: up to and including 2.8.1.1
- Mobile-Industrial-Robotics ER200 Firmware: up to and including 2.8.1.1
- Uvd-Robots Uvd Robots Firmware: up to and including 2.8.1.1
Published 2020-06-24. Last modified 2026-06-17.