CVE Vulnerabilities

CVE-2016-2333

Published: Apr 25, 2016 | Modified: Apr 12, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 use the same hardcoded encryption key across different customers installations, which allows attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation.

Affected Software

NameVendorStart VersionEnd Version
Syslink_sl-1000_modular_gatewaySystech- (including)- (including)

References