Lucene search

K
cvelistSICK AGCVELIST:CVE-2022-27581
HistoryDec 13, 2022 - 12:00 a.m.

CVE-2022-27581

2022-12-1300:00:00
CWE-327
SICK AG
www.cve.org
sick
rfu61x
firmware
weak cipher suites
encryption
ssh
patch
installation

6.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

36.8%

Use of a Broken or Risky Cryptographic Algorithm in SICK RFU61x firmware version <v2.25 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation procedure for the firmware update is available from the responsible SICK customer contact person.

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "SICK RFU61x Firmware",
    "versions": [
      {
        "version": "<v2.25",
        "status": "affected"
      }
    ]
  }
]

References

6.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

36.8%

Related for CVELIST:CVE-2022-27581