CVE-2024-54855EPSS p20.5%

CVE-2024-54855CVE-2024-54855

fabricators / vanilla_os_core_image

Description

fabricators Ltd Vanilla OS 2 Core image v1.1.0 was discovered to contain static keys for the SSH service, allowing attackers to possibly execute a man-in-the-middle attack during connections with other hosts.

Scoring

CVSS 6.4 ()
VectorCVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:L/A:H
EPSS0.30% probability of exploitation · percentile 20.5% · 2026-10-05T12:00:23Z
Last modified2026-07-05
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.