Sprecher Automations SPRECON-E series uses default cryptographic keys that allow an unprivileged remote attacker to access all encrypted communications, thereby compromising confidentiality and integrity.
The firmware of SPRECON-E devices contains predefined (default) cryptographic keys that are common to all units of a given series. An attacker with knowledge of these keys — for example, obtained through firmware analysis — can intercept and decrypt the encrypted network communication of the devices without any authorization. The lack of key individualization means that the compromise of one unit results in the compromise of encryption on all devices in that series.
An attacker can gain full access to the content of encrypted communication (breach of confidentiality) and potentially modify transmitted data (breach of integrity). In the case of industrial automation devices, this could lead to disruption of control processes.
Patches available from the manufacturer should be applied according to the references (https://www.sprecher-automation.com/fileadmin/itSecurity/PDF/SPR-2511043_de.pdf). Until patches are implemented, it is recommended to isolate SPRECON-E devices from external networks and restrict network access to these devices exclusively to trusted hosts through network segmentation and firewall.
Sprecher Automation SPRECON-E-T3 Firmware, SPRECON-E-C Firmware, SPRECON-E-C, SPRECON-E-P Firmware, SPRECON-E-T3 — versions indicated in the manufacturer's references
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:NSprecher Automation Sprecon E C
HWSprecher-Automationall versionsSprecher Automation Sprecon E C Firmware
OSSprecher-Automationall versionsSprecher Automation Sprecon E P
HWSprecher-Automationall versionsSprecher Automation Sprecon E P Firmware
OSSprecher-Automationall versionsSprecher Automation Sprecon E T3
HWSprecher-Automationall versionsSprecher Automation Sprecon E T3 Firmware
OSSprecher-Automationall versions
Related vulnerabilities
Sprecher-Automation Sprecon-E: domyślne klucze kryptograficzne umożliwiają pełny dostęp zdalny
Hardcoded Credentials w urządzeniach SPRECON-E CPU firmy Sprecher Automation
Niedostateczna siła szyfrowania w urządzeniach Sprecher Automation SPRECON-E-C, SPRECON-E-P i SPRECON-E-T3 poz...
Improper Privilege Management in Sprecher Automation SPRECON-E below version 8.71j allows a remote attacker wi...
In Sprecher Automation SPRECON-E-C/P/T3 CPU in variant PU244x a vulnerable firmware verification has been iden...