Status: UPDATED
| Advisory ID: CVE-2026-14984
Key Details
| CVE | CVE-2026-14984 |
| CVSS Score / Version | 9.4 (Critical) / CVSS v4.0 |
| Updated | 2026-10-02 |
| Affected products | Teledyne FLIR Aware2 |
| Classified as | CWE-319 (Cleartext Transmission of Sensitive Information) |
Affected Products, Subsystems & Sectors
| Subsystems | General OT |
| Sectors | Multiple |
What to Know
Cleartext transmission in the primary control endpoints of Teledyne FLIR Aware2 versions through 6.9.0.2 allows remote unauthenticated attackers to intercept, hijack, or modify session traffic against Teledyne FLIR PackBot robots running this software via sniffing or hijacking network traffic.
What to Do
Monitor Teledyne FLIR's web page for any future patch releases.
References