Omicronenergy's vulnerability profile centers on a narrow portfolio of energy-management and power-monitoring products including StationGuard and StationScout, which operate in industrial and critical infrastructure settings. The observed vulnerabilities cluster around cryptographic signature verification, authorization logic, and resource-consumption boundaries—weakness classes typical of control-system software that must authenticate commands and manage constrained hardware resources. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Omicronenergy over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-28610CRITICAL The update process in OMICRON StationGuard and OMICRON StationScout before 2.21 can be exploited by providing a modified firmware update image. This allows a remote attacker to gai | Mar 23, 2023 | 9.8 | 29 | NO | NO |
CVE-2023-28611CRITICAL Incorrect authorization in OMICRON StationGuard 1.10 through 2.20 and StationScout 1.30 through 2.20 allows an attacker to bypass intended access restrictions. | Mar 23, 2023 | 9.8 | 24 | NO | NO |
CVE-2021-30464HIGH OMICRON StationGuard before 1.10 allows remote attackers to cause a denial of service (connectivity outage) via crafted tcp/20499 packets to the CTRL Ethernet port. | Apr 20, 2021 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Omicronenergy.
Media articles that mention a CVE ID that affects a product developed by Omicronenergy — matched by CVE ID, not by vendor name.