Use of a Broken or Risky Cryptographic Algorithm in SICK RFU61x firmware version <v2.25 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation procedure for the firmware update is available from the responsible SICK customer contact person.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Sick
Subscribe
|
Rfu610-10600
Subscribe
Rfu610-10600 Firmware
Subscribe
Rfu610-10601
Subscribe
Rfu610-10601 Firmware
Subscribe
Rfu610-10603
Subscribe
Rfu610-10603 Firmware
Subscribe
Rfu610-10604
Subscribe
Rfu610-10604 Firmware
Subscribe
Rfu610-10605
Subscribe
Rfu610-10605 Firmware
Subscribe
Rfu610-10607
Subscribe
Rfu610-10607 Firmware
Subscribe
Rfu610-10609
Subscribe
Rfu610-10609 Firmware
Subscribe
Rfu610-10610
Subscribe
Rfu610-10610 Firmware
Subscribe
Rfu610-10613
Subscribe
Rfu610-10613 Firmware
Subscribe
Rfu610-10614
Subscribe
Rfu610-10614 Firmware
Subscribe
Rfu610-10618
Subscribe
Rfu610-10618 Firmware
Subscribe
Rfu610-10700
Subscribe
Rfu610-10700 Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-32082 | Use of a Broken or Risky Cryptographic Algorithm in SICK RFU61x firmware version <v2.25 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation procedure for the firmware update is available from the responsible SICK customer contact person. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://sick.com/psirt |
|
History
Tue, 22 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: SICK AG
Published:
Updated: 2025-04-22T15:52:43.462Z
Reserved: 2022-03-21T00:00:00.000Z
Link: CVE-2022-27581
Updated: 2024-08-03T05:32:59.473Z
Status : Modified
Published: 2022-12-13T16:15:18.817
Modified: 2025-04-22T16:15:28.830
Link: CVE-2022-27581
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD