Westermo

Weos

4 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.68%
  • Veröffentlicht 02.09.2026 00:00:00
  • Zuletzt bearbeitet 08.09.2026 19:29:09

Westermo WeOS 5.x starting from 5.24 allows OS command injection via a media definition.

  • EPSS 0.31%
  • Veröffentlicht 20.07.2025 00:00:00
  • Zuletzt bearbeitet 15.04.2026 00:35:42

An issue was discovered in Westermo WeOS 5 (5.24 through 5.24.4). A threat actor potentially can gain unauthorized access to sensitive information via system logging information (syslog verbose logging that includes credentials).

  • EPSS 0.36%
  • Veröffentlicht 24.04.2025 00:00:00
  • Zuletzt bearbeitet 15.04.2026 00:35:42

Westermo WeOS 5 through 5.23.0 allows a reboot via a malformed ESP packet.

  • EPSS 1.21%
  • Veröffentlicht 30.01.2016 12:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Westermo WeOS before 4.19.0 uses the same SSL private key across different customers' installations, which makes it easier for man-in-the-middle attackers to defeat cryptographic protection mechanisms by leveraging knowledge of a key.