6.1

CVE-2012-4898

Tropos Wireless Mesh Routers Insufficient Entropy

Mesh OS before 7.9.1.1 on Tropos wireless mesh routers does not use a sufficient source of entropy for SSH keys, which makes it easier for man-in-the-middle attackers to spoof a device or modify a client-server data stream by leveraging knowledge of a key from a product installation elsewhere.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.91% 0.553
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.1 4.9 7.8
AV:N/AC:H/Au:N/C:C/I:P/A:N
ics-cert@hq.dhs.gov 6.1 4.9 7.8
AV:N/AC:H/Au:N/C:C/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.us-cert.gov/control_systems/pdf/ICSA-12-297-01.pdf
US Government Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-12-297-01