CVE-2026-25608
Lack of traffic encryption in STER
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
STER uses unencrypted TCP traffic to transmit data over the network. It allows an attacker to conduct a Man-In-The-Middle attack and obtain sensitive data such as passwords, personal data, or authentication tokens. This issue was fixed in version 9.5.
| CWE | CWE-319 |
| Vendor | centralny instytut ochrony pracy - państwowy instytut badawczy |
| Product | ster |
| Published | May 22, 2026 |
| Last Updated | May 22, 2026 |
Stay Ahead of the Next One
Get instant alerts for centralny instytut ochrony pracy - państwowy instytut badawczy ster
Be the first to know when new unknown vulnerabilities affecting centralny instytut ochrony pracy - państwowy instytut badawczy ster are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
Affected Versions
Centralny Instytut Ochrony Pracy - Państwowy Instytut Badawczy / STER
0 < 9.5
References
Credits
Michelin CERT