Westermo WeOS before 4.19.0 uses the same SSL private key across different customers installations, which makes it easier for man-in-the-middle attackers to defeat cryptographic protection mechanisms by leveraging knowledge of a key.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Weos | Westermo | 4.18.0 (including) | 4.18.0 (including) |