Man-in-the-middle Vulnerability (CVE-2014-2379) for multiple Sensys networking products)
Released on: 2014-09-05
Updated on: 2014-09-09
Affected Systems:
Sensys Networks VSN240-F
Sensys Networks VSN240-T
Description:
Bugtraq id: 69644
CVE (CAN) ID: CVE-2014-2379
Sensys Networks is a vendor of wireless traffic detection and integrated traffic data systems and is headquartered in the United States.
Sensys Networks VSN240-F and VSN240-T traffic sensor 2.10.1 earlier versions, TrafficDOT 2.10.3 earlier versions do not use encryption, remote attackers can exploit this vulnerability to interfere with traffic control through relay transmission over wireless Networks.
<* Source: Cesar Cerrudo (cesarc56@yahoo.com)
*>
Suggestion:
Vendor patch:
Sensys Networks
---------------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.sensysnetworks.com/resources-by-category/
This article permanently updates the link address: