PT-2026-68492 · Omicron · Stationscout
CVE-2026-16731
·
Published
2026-08-06
·
Updated
2026-08-06
CVSS v4.0
8.3
High
| Vector | AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:H/E:U/S:P |
Name of the Vulnerable Software and Affected Versions
OMICRON StationScout versions prior to 3.05
Description
A cryptographic timing side-channel vulnerability exists in the backend authentication mechanism. This flaw allows an unauthenticated attacker to forge valid authentication credentials, bypass authentication and authorization, and impersonate legitimate clients. Successful exploitation enables full access to the system configuration, which can lead to the modification, reset, or unauthorized alteration of system parameters, as well as the injection of network traffic into the connected network.
Recommendations
Update to version 3.05 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Stationscout