๐Ÿ” CVE Alert

CVE-2026-16315

HIGH 8.7

Authentication and authorization bypass via cryptographic timing side-channel attack in StationGuard

CVSS Score
8.7
EPSS Score
0.0%
EPSS Percentile
0th

OMICRON StationGuard before version 4.10 contains a cryptographic timing side-channel vulnerability in the backend authentication mechanism that may allow an unauthenticated attacker to forge valid authentication credentials, bypass authentication and authorization, and impersonate legitimate clients. An attacker can gain full access to the system configuration, allowing modification, reset, or unauthorized alteration of system parameters.

CWE CWE-208
Vendor omicron electronics gmbh
Product omicron stationguard
Published Aug 6, 2026
Stay Ahead of the Next One

Get instant alerts for omicron electronics gmbh omicron stationguard

Be the first to know when new high vulnerabilities affecting omicron electronics gmbh omicron stationguard are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Changed
Confidentiality
High
Integrity
High
Availability
None

Affected Versions

OMICRON electronics GmbH / OMICRON StationGuard
0 < 4.10

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
omicronenergy.com: https://www.omicronenergy.com/.well-known/csaf/osa-21.json