The vendor explicitly identifies these products as affected by this CVE.
- SIRIUS 3RK3 Modular Safety System (MSS)
- SIRIUS Safety Relays 3SK2
- Summary
- Affected devices only provide weak password obfuscation. An attacker with network access could retrieve and de-obfuscate the safety password used for protection against inadvertent operating errors.
- Remediation
- Limit physical access to affected devices to trusted personnel
