CVE-2026-16315
Authentication and authorization bypass via cryptographic timing side-channel attack in StationGuard
CVSS Score
8.7
EPSS Score
0.0%
EPSS Percentile
0th
OMICRON StationGuard before version 4.10 contains a cryptographic timing side-channel vulnerability in the backend authentication mechanism that may allow an unauthenticated attacker to forge valid authentication credentials, bypass authentication and authorization, and impersonate legitimate clients. An attacker can gain full access to the system configuration, allowing modification, reset, or unauthorized alteration of system parameters.
| CWE | CWE-208 |
| Vendor | omicron electronics gmbh |
| Product | omicron stationguard |
| Published | Aug 6, 2026 |
Stay Ahead of the Next One
Get instant alerts for omicron electronics gmbh omicron stationguard
Be the first to know when new high vulnerabilities affecting omicron electronics gmbh omicron stationguard are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Changed
Confidentiality
High
Integrity
High
Availability
None
Affected Versions
OMICRON electronics GmbH / OMICRON StationGuard
0 < 4.10