CVE-2023-2443

Severity CVSS v4.0:
Pending analysis
Type:
CWE-326 Inadequate Encryption Strength
Publication date:
11/05/2023
Last modified:
20/05/2023

Description

<br /> Rockwell Automation ThinManager product allows the use of medium strength ciphers.  If the client requests an insecure cipher, a malicious actor could potentially decrypt traffic sent between the client and server API.<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rockwellautomation:thinmanager:*:*:*:*:*:*:*:* 13.0 (including)