Home
LOW: 2.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:NDefault status
unaffected
Any version before 9.5
affected
Description
STER uses unencrypted TCP traffic to transmit data over the network. It allows an attacker to conduct a Man-In-The-Middle attack and obtain sensitive data such as passwords, personal data, or authentication tokens. This issue was fixed in version 9.5.
Problem types
CWE-319 Cleartext Transmission of Sensitive Information
Product status
Any version before 9.5
Credits
Michelin CERT
References
cert.pl/posts/2026/05/CVE-2026-25606
www.ciop.pl/...nfpb=true&_pageLabel=P52000165211572544981480