CVE-2025-24008

A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions), SIRIUS Safety Relays 3SK2 (All versions). The affected devices do not encrypt data in transit. An attacker with network access could eavesdrop the connection and retrieve sensitive information, including obfuscated safety passwords.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Se ha identificado una vulnerabilidad en SIRIUS 3RK3 Modular Safety System (MSS) (todas las versiones), SIRIUS Safety Relays 3SK2 (todas las versiones). Los dispositivos afectados no cifran los datos en tránsito. Un atacante con acceso a la red podría interceptar la conexión y obtener información confidencial, incluyendo contraseñas de seguridad ofuscadas.

13 May 2025, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-13 10:15

Updated : 2026-04-15 00:35


NVD link : CVE-2025-24008

Mitre link : CVE-2025-24008

CVE.ORG link : CVE-2025-24008


JSON object : View

Products Affected

No product.

CWE
CWE-311

Missing Encryption of Sensitive Data