CVE Vulnerabilities

CVE-2016-2333

Published: Apr 25, 2016 | Modified: May 04, 2016
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 use the same hardcoded encryption key across different customers installations, which allows attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation.

Affected Software

Name Vendor Start Version End Version
Syslink_sl-1000_modular_gateway Systech - (including) - (including)

References