news.mlab.sh
59 results
vulnerability

Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth

A security researcher discovered two separate root remote code execution (RCE) vulnerabilities in Unitree's G1 and G1 EDU humanoid robots. One vulnerability, accessible via Bluetooth, allows attackers to gain root access without pairing, while the other involves a network-adjacent path. Unitree has addressed the cloud…

The Hacker News · 2d ago High
vulnerability

Zoneminder

A critical Remote Code Execution (RCE) vulnerability exists in Zoneminder versions 1.37.48 and 1.38.3, allowing authenticated users to execute arbitrary operating system commands. The vulnerability stems from an Improper…

CISA Advisories · 5d ago Critical