Security Advisory
CVE-2024-0323
9.8
CRITICAL
Vulnerability Description
The FTP server used on the B&R
Automation Runtime supports unsecure encryption mechanisms, such as SSLv3,
TLSv1.0 and TLS1.1. An network-based attacker can exploit the flaws to conduct
man-in-the-middle attacks or to decrypt communications between the affected product
clients.
Published Date
February 5, 2024
Official Source
NIST NVD Advisory