Filtered by vendor Westermo Subscriptions
Filtered by product Weos Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-54319 1 Westermo 1 Weos 2025-07-22 6.3 Medium
An issue was discovered in Westermo WeOS 5 (5.24 through 5.24.4). A threat actor potentially can gain unauthorized access to sensitive information via system logging information (syslog verbose logging that includes credentials).
CVE-2025-46419 1 Westermo 1 Weos 2025-04-29 5.9 Medium
Westermo WeOS 5 through 5.23.0 allows a reboot via a malformed ESP packet.
CVE-2015-7923 1 Westermo 1 Weos 2025-04-12 N/A
Westermo WeOS before 4.19.0 uses the same SSL private key across different customers' installations, which makes it easier for man-in-the-middle attackers to defeat cryptographic protection mechanisms by leveraging knowledge of a key.