Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5f54-x7j7-36p3

Опубликовано: 21 янв. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Telenot CompasX versions prior to 32.0 use a weak seed for random number generation leading to predictable AES keys used in the NFC tags used for authorization of users.

Telenot CompasX versions prior to 32.0 use a weak seed for random number generation leading to predictable AES keys used in the NFC tags used for authorization of users.

EPSS

Процентиль: 18%
0.00058
Низкий

7.5 High

CVSS3

Дефекты

CWE-335
CWE-338

Связанные уязвимости

CVSS3: 5.5
nvd
около 4 лет назад

Telenot CompasX versions prior to 32.0 use a weak seed for random number generation leading to predictable AES keys used in the NFC tags used for local authorization of users. This may lead to total loss of trustworthiness of the installation.

EPSS

Процентиль: 18%
0.00058
Низкий

7.5 High

CVSS3

Дефекты

CWE-335
CWE-338