Siemens RuggedCom Rugged Operating System (ROS) prior to 3.12, ROX I OS up to and including 1.14.5, ROX II OS up to and including 2.3.0, and RuggedMax OS up to and including 4.2.1.4621.22 use hardcoded private keys for SSL and SSH communication, which makes it easier for man-in-the-middle malicious users to spoof servers and decrypt network traffic by leveraging the availability of these keys within ROS files at all customer installations.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
siemens ros |
||
siemens rox i os |
||
siemens rox ii os |
||
siemens ruggedmax os |