PT-2026-2433 · Fabricators · Vanilla Os 2 Core

Published

2026-01-13

·

Updated

2026-02-10

·

CVE-2024-54855

CVSS v3.1

6.4

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:U/C:H/I:L/A:H
Name of the Vulnerable Software and Affected Versions fabricators Ltd Vanilla OS 2 Core image version 1.1.0
Description The software contains static keys for the SSH service. This may allow attackers to execute a man-in-the-middle attack during connections with other hosts.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-54855
GHSA-67PC-HQR2-G34H

Affected Products

Vanilla Os 2 Core