logo

Carlson VASCO-B GNSS Receivers Left Open to Remote Hijack

ID: 56902f9d-da87-5bce-9a17-c4d68f2a258f

STIX ID: report--56902f9d-da87-5bce-9a17-c4d68f2a258f

Feed Name: securityonline.info

Threat Score
78/100

Date Published: 2026-04-27

Date Updated: 2026-04-27

Author: Ddos

...
...

A critical vulnerability (CVE-2026-3893, CVSS 9.4) has been identified in the Carlson VASCO-B GNSS Receiver: the device lacks an authentication mechanism, allowing anyone with network access to view and modify configuration and operational settings, potentially corrupting positioning and timing services; Carlson Software advises updating to version 1.4.0 or later to remediate the issue.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.