ZeroHour

CVE-2017-14852

CVSS 3.1
8.6 high
EPSS
1%p61
Published
()
Modified
Description

An insecure communication was found between a user and the Orpak SiteOmat management console for all known versions, due to an invalid SSL certificate. The attack allows for an eavesdropper to capture the communication and decrypt the data.

Vendors
orpak
Products
siteomat
Weakness
CWE-310, CWE-311
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L

In the news

No ingested article mentions this CVE yet.