An attacker may exploit the use of weak CBC-based cipher suites in the device’s SSH service to potentially observe or manipulate parts of the encrypted SSH communication, if they are able to intercept or interact with the network traffic.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Users are strongly recommended to upgrade to release version 2.4.1.
Workaround
No workaround given by the vendor.
References
History
Fri, 27 Feb 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An attacker may exploit the use of weak CBC-based cipher suites in the device’s SSH service to potentially observe or manipulate parts of the encrypted SSH communication, if they are able to intercept or interact with the network traffic. | |
| Weaknesses | CWE-327 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: SICK AG
Published:
Updated: 2026-02-27T08:40:53.328Z
Reserved: 2026-01-29T15:06:29.934Z
Link: CVE-2026-1626
No data.
Status : Received
Published: 2026-02-27T09:16:15.863
Modified: 2026-02-27T09:16:15.863
Link: CVE-2026-1626
No data.
OpenCVE Enrichment
No data.
Weaknesses