Cryptographic Timing Side-Channel Vulnerability in OMICRON StationGuard
CVE-2026-16315

8.1HIGH

What is CVE-2026-16315?

OMICRON StationGuard prior to version 4.10 is susceptible to a cryptographic timing side-channel vulnerability in its backend authentication mechanism. This flaw enables an unauthenticated attacker to forge valid authentication credentials, potentially bypassing both authentication and authorization processes. By exploiting this vulnerability, attackers can impersonate legitimate clients, thus gaining complete access to system configurations. This may lead to unauthorized modifications, resets, or alterations of critical system parameters.

Affected Version(s)

OMICRON StationGuard 0 < 4.10

References

CVSS V4

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.