9.3

CVE-2013-2782

Schneider Electric Trio J-Series License Free Ethernet Radio with firmware 3.6.0 through 3.6.3 uses the same AES encryption key across different customers' installations, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Schneider-electricTburjr900 Version00002dh0
Schneider-electricTburjr900 Version00002eh0
Schneider-electricTburjr900 Version01002dh0
Schneider-electricTburjr900 Version01002eh0
Schneider-electricTburjr900 Version05002dh0
Schneider-electricTburjr900 Version05002eh0
Schneider-electricTburjr900 Version06002dh0
Schneider-electricTburjr900 Version06002eh0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.25% 0.457
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C