Home
MEDIUM: 5.0 CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:LDefault status
unknown
Any version
affected
Default status
unknown
Any version
affected
Default status
unknown
Any version
affected
Default status
unknown
Any version
affected
Description
Unitree Go2, G1, H1, and B2 devices through 2025-09-20 accept any handshake secret with the unitree substring.
Problem types
CWE-306 Missing Authentication for Critical Function
Product status
Any version
Any version
Any version
Any version
References
spectrum.ieee.org/unitree-robot-exploit
news.ycombinator.com/item?id=45381590