Vulnerability CVE-2023-52238


Published: 2024-07-09

Description:
A vulnerability has been identified in RUGGEDCOM RST2228 (All versions < V5.9.0), RUGGEDCOM RST2228P (All versions < V5.9.0). The web server of the affected systems leaks the MACSEC key in clear text to a logged in user. An attacker with the credentials of a low privileged user could retrieve the MACSEC key and access (decrypt) the ethernet frames sent by authorized recipients.

Type:

CWE-200

(Information Exposure)

 References:
https://cert-portal.siemens.com/productcert/html/ssa-170375.html

Copyright 2026, cxsecurity.com

 

Back to Top