CVE-2017-14852: Orpak Siteomat
High severity, CVSS 8.6. EPSS: 1% chance of exploitation in the next 30 days.
An insecure communication was found between a user and the Orpak SiteOmat management console for all known versions, due to an invalid SSL certificate. The attack allows for an eavesdropper to capture the communication and decrypt the data.
Affected products
- Orpak Siteomat: before 6.4.414.084 (fixed in 6.4.414.084)
Published 2019-06-03. Last modified 2026-06-17.