CVE-2026-1626

Published Feb 27, 2026

Last updated 14 days ago

Overview

Description
An attacker may exploit the use of weak CBC-based cipher suites in the device’s SSH service to potentially observe or manipulate parts of the encrypted SSH communication, if they are able to intercept or interact with the network traffic.
Source
psirt@sick.de
NVD status
Analyzed
Products
lms1000_firmware, mrs1000_firmware

Risk scores

CVSS 3.1

Type
Primary
Base score
9.1
Impact score
5.2
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Severity
CRITICAL

Weaknesses

psirt@sick.de
CWE-327

Social media

Hype score
Not currently trending

Configurations