The vendor explicitly identifies these products as affected by this CVE.
- RUGGEDCOM RST2228
- RUGGEDCOM RST2228P
- Summary
- The web server of the affected systems leaks the MACSEC key in clear text to a logged in user. An attacker with the credentials of a low privileged user could retrieve the MACSEC key and access (decrypt) the ethernet frames sent by authorized recipients.
- Remediation
- Update to V5.9.0 or later version
