4.3
CVSSv2

CVE-2015-5537

Published: 03/08/2015 Updated: 01/02/2022
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The SSL layer of the HTTPS service in Siemens RuggedCom ROS prior to 4.2.0 and ROX II does not properly implement CBC padding, which makes it easier for man-in-the-middle malicious users to obtain cleartext data via a padding-oracle attack, a different vulnerability than CVE-2014-3566.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

siemens ruggedcom rox ii firmware -

siemens ruggedcom rugged operating system