CVE-2017-14852

Severity CVSS v4.0:
Pending analysis
Type:
CWE-310 Cryptographic Issues
Publication date:
03/06/2019
Last modified:
04/06/2019

Description

An insecure communication was found between a user and the Orpak SiteOmat management console for all known versions, due to an invalid SSL certificate. The attack allows for an eavesdropper to capture the communication and decrypt the data.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:orpak:siteomat:*:*:*:*:*:*:*:* 6.4.414.084 (excluding)