CVE-2026-14983
published 2026-10-01CVE-2026-14983: Missing authentication in the web interface in Teledyne FLIR Aware2 versions through 6.9.0.2 allows remote unauthenticated attackers to achieve denial of…
PriorityP339high7.1CVSS 4.0
AVAACLATNPRNUINVCNVINVAHSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.24%
13.9th percentile
Missing authentication in the web interface in Teledyne FLIR Aware2 versions through 6.9.0.2 allows remote unauthenticated attackers to achieve denial of service against Teledyne FLIR PackBot robots running this software via misuse of the reboot endpoint.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| teledyne_flir | aware2 | <= 6.9.0.2 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Teledyne FLIR Aware2 up to 6.9.0.2 Web Interface missing authentication
vuldb·2026-10-01·CVSS 7.1
CVE-2026-14983 [HIGH] Teledyne FLIR Aware2 up to 6.9.0.2 Web Interface missing authentication
A vulnerability identified as critical has been detected in Teledyne FLIR Aware2 up to 6.9.0.2. This affects an unknown part of the component Web Interface. The manipulation leads to missing authentication.
This vulnerability is traded as CVE-2026-14983. It is possible to initiate the attack remotely. There is no exploit available.
GHSA
Missing authentication in the web interface in Teledyne FLIR Aware2 versions through 6.9.0.2 allows remote unauthenticated attackers to achieve denial of service against Teledyne FLIR PackBot robots r
ghsa_unreviewed·2026-10-01
CVE-2026-14983 [HIGH] CWE-306 Missing authentication in the web interface in Teledyne FLIR Aware2 versions through 6.9.0.2 allows remote unauthenticated attackers to achieve denial of service against Teledyne FLIR PackBot robots r
Missing authentication in the web interface in Teledyne FLIR Aware2 versions through 6.9.0.2 allows remote unauthenticated attackers to achieve denial of service against Teledyne FLIR PackBot robots running this software via misuse of the reboot endpoint.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-10-01
Published