Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-46948 | Diffie-Hellman groups with insufficient strength are used in the SSL/TLS stack of B&R Automation Runtime versions before 6.0.2, allowing a network attacker to decrypt the SSL/TLS communication. |
Fri, 19 Dec 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Br-automation
Br-automation automation Runtime |
|
| CPEs | cpe:2.3:a:br-automation:automation_runtime:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Br-automation
Br-automation automation Runtime |
|
| Metrics |
cvssV3_1
|
Mon, 12 Aug 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 10 Aug 2024 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Diffie-Hellman groups with insufficient strength are used in the SSL/TLS stack of B&R Automation Runtime versions before 6.0.2, allowing a network attacker to decrypt the SSL/TLS communication. | |
| Title | Diffie-Hellman groups with insufficient strength used in SSL/TLS stack of B&R Automation Runtime | |
| Weaknesses | CWE-326 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: ABB
Published:
Updated: 2024-08-12T14:32:22.309Z
Reserved: 2024-06-10T16:11:48.689Z
Link: CVE-2024-5800
Updated: 2024-08-12T14:32:15.802Z
Status : Analyzed
Published: 2024-08-12T13:38:38.110
Modified: 2025-12-19T14:51:31.840
Link: CVE-2024-5800
No data.
OpenCVE Enrichment
No data.
EUVD