omicronenergy stationscout是omicronenergy公司的一套变电站自动化巡检系统。 omicronenergy stationscout 3.05之前版本存在侧信道信息泄露漏洞,该漏洞源于后端身份验证机制存在加密时序侧信道漏洞,可能允许未经身份验证的攻击者伪造有效身份验证凭据,绕过身份验证和授权,冒充合法客户端,获取系统配置的完全访问权限,从而修改、重置或未经授权更改系统参数,或向连接的网络注入网络流量。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| OMICRON electronics GmbH | OMICRON StationScout | < 3.05 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| OMICRON electronics GmbH | OMICRON StationScout | 0 ~ 3.05 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-16315 | 8.7 HIGH | Authentication and authorization bypass via cryptographic timing side-channel attack in St |
| CVE-2026-16316 | 4.3 MEDIUM | Malformed IEC 61850 Sampled Values frames cause partial denial of service in StationGuard |
No comments yet