Path Traversal Vulnerability in Teledyne FLIR Robots by Teledyne Technologies
CVE-2026-55393

10CRITICAL

Key Information:

Status
Vendor
CVE Published:
1 October 2026

What is CVE-2026-55393?

The vulnerability exists in the Teledyne FLIR Aware2 software, impacting PackBot and FirstLook robot models. Unvalidated pathnames in the web interface allow remote, unauthorized attackers to exploit these robots. By using path traversal techniques, attackers can potentially access sensitive configuration and security parameters, raising significant concerns for operational security and the integrity of deployed systems.

Affected Version(s)

Aware2 0 <= 6.9.0.2

Aware2 0 <= 1.7.9

References

CVSS V4

Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.