A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05.11 (only with activated debug support)), CP-8050 MASTER MODULE (All versions < CPCI85 V05.11 (only with activated debug support)). The affected devices contain a hard-coded ID in the SSH `authorized_keys` configuration file. An attacker with knowledge of the corresponding private key could login to the device via SSH. Only devices with activated debug support are affected.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published: 2023-10-10T10:21:21.786Z

Updated: 2024-08-02T16:45:56.608Z

Reserved: 2023-06-21T12:13:19.577Z

Link: CVE-2023-36380

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-10-10T11:15:11.817

Modified: 2023-10-17T14:23:25.010

Link: CVE-2023-36380

cve-icon Redhat

No data.