This content is restricted.
Brief
Here is a summary of the provided document:
Summary:
A vulnerability has been identified in the iCLASS SE and OMNIKEY readers and modules from HID Global. The vulnerability, rated as 5.9 on the CVSS v3 scale, allows an attacker to read data from reader configuration cards and credentials. The data exposed includes credential and device administration keys, which could be used to create malicious configuration cards or credentials. The vulnerability can be exploited locally and requires physical proximity to the reader configuration cards. Mitigation strategies include protecting reader configuration cards, disabling legacy technologies, hardening readers from configuration changes, and minimizing network exposure. The Cybersecurity and Infrastructure Security Agency (CISA) recommends organizations take defensive measures to minimize the risk of exploitation and implement recommended cybersecurity strategies for proactive defense of ICS assets.
Highlights content goes here...
This content is restricted.
