CVE Vulnerabilities

CVE-2013-2782

Published: Aug 28, 2013 | Modified: Aug 29, 2013
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Schneider Electric Trio J-Series License Free Ethernet Radio with firmware 3.6.0 through 3.6.3 uses the same AES encryption key across different customers installations, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation.

Affected Software

Name Vendor Start Version End Version
Tburjr900 Schneider-electric 00002dh0 (including) 00002dh0 (including)
Tburjr900 Schneider-electric 00002eh0 (including) 00002eh0 (including)
Tburjr900 Schneider-electric 01002dh0 (including) 01002dh0 (including)
Tburjr900 Schneider-electric 01002eh0 (including) 01002eh0 (including)
Tburjr900 Schneider-electric 05002dh0 (including) 05002dh0 (including)
Tburjr900 Schneider-electric 05002eh0 (including) 05002eh0 (including)
Tburjr900 Schneider-electric 06002dh0 (including) 06002dh0 (including)
Tburjr900 Schneider-electric 06002eh0 (including) 06002eh0 (including)

References