CVE-2020-10280: Easyrobotics Er-Flex Firmware
High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.
The Apache server on port 80 that host the web interface is vulnerable to a DoS by spamming incomplete HTTP headers, effectively blocking the access to the dashboard.
Affected products
- Easyrobotics Er-Flex Firmware: affected versions not specified
- Easyrobotics Er-Lite Firmware: affected versions not specified
- Easyrobotics Er-One Firmware: affected versions not specified
- Easyrobotics ER200 Firmware: affected versions not specified
- Mobile-Industrial-Robots MIR1000 Firmware: affected versions not specified
- Mobile-Industrial-Robots MIR100 Firmware: up to and including 2.8.1.1
- Mobile-Industrial-Robots MIR200 Firmware: affected versions not specified
- Mobile-Industrial-Robots MIR250 Firmware: affected versions not specified
- Mobile-Industrial-Robots MIR500 Firmware: affected versions not specified
- Uvd-Robots Uvd Firmware: affected versions not specified
Published 2020-06-24. Last modified 2026-06-17.