Not just that - they can ~all be bricked remotely unless running the latest updates!!
CVE-2022-23968: https://neosmart.net/blog/xerox-vulnerability-allows-unauthe...
CVE-2022-23968: https://neosmart.net/blog/xerox-vulnerability-allows-unauthe...
2019-09-26 Reported to vendor with POC
2020-01-14 Followed up with vendor
2022-01-24 Publicly disclosed (still no fix over 2 years later!)
2022-01-28 Fix released by vendor
I wonder if the same will happen with this RIGOL oscilloscope vulnerability.