Showing 2 vulnerabilities on this page for NovaSeq 6000 Control Software

Signals CISA KEV Ransomware Nuclei
Illumina vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

CVE-2023-1968

Instruments with Illumina Universal Copy Service v2.x are vulnerable due to binding to an unrestricted IP address. An unauthenticated malicious actor could use UCS to listen on all IP addresses, including those capable of accepting remote communications.

CWE-1327Apr 28, 2023
CVSS10.0v3.1EPSS1.81%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

CVE-2023-1966

Instruments with Illumina Universal Copy Service v1.x and v2.x contain an unnecessary privileges vulnerability. An unauthenticated malicious actor could upload and execute code remotely at the operating system level, which could allow an attacker to change settings, configurations, software, or access sensitive data on the affected product.

CWE-250CWE-269Apr 28, 2023
CVSS7.4v3.1EPSS0.916%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX