Lucene search

K
nvd[email protected]NVD:CVE-2012-3039
HistoryAug 09, 2013 - 11:55 p.m.

CVE-2012-3039

2013-08-0923:55:02
CWE-310
web.nvd.nist.gov
2

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:S/C:C/I:C/A:C

AI Score

6.8

Confidence

Low

EPSS

0.002

Percentile

59.1%

Moxa OnCell Gateway G3111, G3151, G3211, and G3251 devices with firmware before 1.4 do not use a sufficient source of entropy for SSH and SSL keys, which makes it easier for remote attackers to obtain access by leveraging knowledge of a key from a product installation elsewhere.

Affected configurations

Nvd
Node
moxaoncell_gateway_firmwareRange1.3
AND
moxaoncell_gateway_g3111Match-
OR
moxaoncell_gateway_g3151Match-
OR
moxaoncell_gateway_g3211Match-
OR
moxaoncell_gateway_g3251Match-
VendorProductVersionCPE
moxaoncell_gateway_firmware*cpe:2.3:o:moxa:oncell_gateway_firmware:*:*:*:*:*:*:*:*
moxaoncell_gateway_g3111-cpe:2.3:h:moxa:oncell_gateway_g3111:-:*:*:*:*:*:*:*
moxaoncell_gateway_g3151-cpe:2.3:h:moxa:oncell_gateway_g3151:-:*:*:*:*:*:*:*
moxaoncell_gateway_g3211-cpe:2.3:h:moxa:oncell_gateway_g3211:-:*:*:*:*:*:*:*
moxaoncell_gateway_g3251-cpe:2.3:h:moxa:oncell_gateway_g3251:-:*:*:*:*:*:*:*

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:S/C:C/I:C/A:C

AI Score

6.8

Confidence

Low

EPSS

0.002

Percentile

59.1%

Related for NVD:CVE-2012-3039