← Back

CVE-2022-46834

nvd nist
Published: Dec 13, 2022Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

Use of a Broken or Risky Cryptographic Algorithm in SICK RFU65x firmware version < v2.21 allows a low-privileged remote attacker to decrypt the encrypted data if the user requested weak cipher suites to be used for encryption via the SSH interface. The patch and installation procedure for the firmware update is available from the responsible SICK customer contact person.

Affected (7)

7 products
Rfu650 10100 Firmware
Rfu650 10101 Firmware
Rfu650 10102 Firmware
Rfu650 10103 Firmware
Rfu650 10104 Firmware
Rfu650 10105 Firmware
Rfu650 10106 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.21
Running on/withPlatform Versions
Sick
Rfu650 10100
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.21
Running on/withPlatform Versions
Sick
Rfu650 10101
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.21
Running on/withPlatform Versions
Sick
Rfu650 10102
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.21
Running on/withPlatform Versions
Sick
Rfu650 10103
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.21
Running on/withPlatform Versions
Sick
Rfu650 10104
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.21
Running on/withPlatform Versions
Sick
Rfu650 10105
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.21
Running on/withPlatform Versions
Sick
Rfu650 10106
All versions

References (2)

Source: psirt@sick.de
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.