CVE-2018-16499

Severity CVSS v4.0:
Pending analysis
Type:
CWE-326 Inadequate Encryption Strength
Publication date:
26/05/2021
Last modified:
07/06/2021

Description

In VOS compromised, an attacker at network endpoints can possibly view communications between an unsuspecting user and the service using man-in-the-middle attacks. Usage of unapproved SSH encryption protocols or cipher suites also violates the Data Protection TSR (Technical Security Requirements).

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:versa-networks:versa_operating_system:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools