CVE-2015-3973: Janitza Umg 508

Medium severity, CVSS 5.0. EPSS: 1.5% chance of exploitation in the next 30 days.

Janitza UMG 508, 509, 511, 604, and 605 devices improperly generate session tokens, which makes it easier for remote attackers to determine a PIN value via unspecified computations on session-token values.

Affected products

Published 2015-10-28. Last modified 2026-06-17.