CVE-2025-24008

A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions), SIRIUS Safety Relays 3SK2 (All versions). The affected devices do not encrypt data in transit. An attacker with network access could eavesdrop the connection and retrieve sensitive information, including obfuscated safety passwords.
Configurations

No configuration.

History

13 May 2025, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-13 10:15

Updated : 2025-05-13 19:35


NVD link : CVE-2025-24008

Mitre link : CVE-2025-24008

CVE.ORG link : CVE-2025-24008


JSON object : View

Products Affected

No product.

CWE
CWE-311

Missing Encryption of Sensitive Data