Vulnerabilities (CVE)

Filtered by CWE-1240
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-0220 1 Br-automation 2 Automation Studio, Technology Guarding 2026-06-17 N/A 8.3 HIGH
B&R Automation Studio Upgrade Service and B&R Technology Guarding use insufficient cryptography for communication to the upgrade and the licensing servers. A network-based attacker could exploit the vulnerability to execute arbitrary code on the products or sniff sensitive data.
CVE-2023-51392 1 Silabs 1 Emberznet 2026-06-17 N/A 6.2 MEDIUM
Ember ZNet between v7.2.0 and v7.4.0 used software AES-CCM instead of integrated hardware cryptographic accelerators, potentially increasing risk of electromagnetic and differential power analysis sidechannel attacks.