Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Siemens RuggedCom Rugged Operating System (ROS) before 3.12, ROX I OS through 1.14.5, ROX II OS through 2.3.0, and RuggedMax OS through 4.2.1.4621.22 use hardcoded private keys for SSL and SSH communication, which makes it easier for man-in-the-middle attackers to spoof servers and decrypt network traffic by leveraging the availability of these keys within ROS files at all customer installations.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Siemens RuggedCom Rugged Operating System 安全漏洞
Vulnerability Description
Siemens RuggedCom Rugged Operating System (ROS) 3.12之前版本、ROX I OS 1.14.5之前版本、ROX II OS 2.3.0之前版本、RuggedMax OS 4.2.1.4621.22之前版本中存在漏洞,该漏洞源于程序对SSL和SSH通信使用了硬编码私钥。通过对所有用户所安装的ROS文件中的密钥可用性加以利用,中间人攻击者利用该漏洞欺骗服务器并破解网络流量。
CVSS Information
N/A
Vulnerability Type
N/A