CVE-2023-52238

CVSS V2 None CVSS V3 None
Description
A vulnerability has been identified in RUGGEDCOM RST2228 (All versions < V5.9.0), RUGGEDCOM RST2228P (All versions < V5.9.0). The web server of the affected systems leaks the MACSEC key in clear text to a logged in user. An attacker with the credentials of a low privileged user could retrieve the MACSEC key and access (decrypt) the ethernet frames sent by authorized recipients.
Overview
  • CVE ID
  • CVE-2023-52238
  • Assigner
  • siemens
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-07-09T12:04:40.975Z
  • Last Modified Date
  • 2024-07-09T12:04:40.975Z
History
Created Old Value New Value Data Type Notes
2024-07-10 13:04:26 Added to TrackCVE