Vulnerability Details CVE-2015-7923
Westermo WeOS before 4.19.0 uses the same SSL private key across different customers' installations, which makes it easier for man-in-the-middle attackers to defeat cryptographic protection mechanisms by leveraging knowledge of a key.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 46.8%
CVSS Severity
CVSS v3 Score 9.0
CVSS v2 Score 9.3
Products affected by CVE-2015-7923
-
cpe:2.3:o:westermo:weos:4.18.0