Description
Use of a Broken or Risky Cryptographic Algorithm in SICK RFU61x firmware version <v2.25 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation procedure for the firmware update is available from the responsible SICK customer contact person.
Published: 2022-12-13
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-32082 Use of a Broken or Risky Cryptographic Algorithm in SICK RFU61x firmware version <v2.25 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation procedure for the firmware update is available from the responsible SICK customer contact person.
References
Link Providers
https://sick.com/psirt cve-icon cve-icon
History

Tue, 22 Apr 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Sick Rfu610-10600 Rfu610-10600 Firmware Rfu610-10601 Rfu610-10601 Firmware Rfu610-10603 Rfu610-10603 Firmware Rfu610-10604 Rfu610-10604 Firmware Rfu610-10605 Rfu610-10605 Firmware Rfu610-10607 Rfu610-10607 Firmware Rfu610-10609 Rfu610-10609 Firmware Rfu610-10610 Rfu610-10610 Firmware Rfu610-10613 Rfu610-10613 Firmware Rfu610-10614 Rfu610-10614 Firmware Rfu610-10618 Rfu610-10618 Firmware Rfu610-10700 Rfu610-10700 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: SICK AG

Published:

Updated: 2025-04-22T15:52:43.462Z

Reserved: 2022-03-21T00:00:00.000Z

Link: CVE-2022-27581

cve-icon Vulnrichment

Updated: 2024-08-03T05:32:59.473Z

cve-icon NVD

Status : Modified

Published: 2022-12-13T16:15:18.817

Modified: 2025-04-22T16:15:28.830

Link: CVE-2022-27581

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses