top of page
perceptive_background_267k.jpg

Carlson Software VASCO-B GNSS Receiver

Published:

23 april 2026 om 12:00:00

Alert date:

23 april 2026 om 17:04:31

Source:

cisa.gov

Click to open the original link from this advisory

Critical Infrastructure, Mobile & IoT

Critical vulnerability CVE-2026-3893 affects Carlson Software VASCO-B GNSS Receiver versions below 1.4.0. The device lacks authentication mechanisms, allowing remote attackers with network access to directly modify configuration and operational functions without credentials. This missing authentication for critical functions has a CVSS score of 9.4 (Critical). The vulnerability affects critical manufacturing infrastructure worldwide. Carlson Software recommends updating to version 1.4.0 or greater to address this issue. No known public exploitation has been reported to CISA at this time.

Technical details

Mitigation steps:

Affected products:

Carlson Software VASCO-B GNSS Receiver

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page