Логотип exploitDog
bind:CVE-2024-45723
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-45723

Количество 2

Количество 2

nvd логотип

CVE-2024-45723

больше 1 года назад

The goTenna Pro ATAK Plugin does not use SecureRandom when generating passwords for sharing cryptographic keys. The random function in use makes it easier for attackers to brute force this password if the broadcasted encryption key is captured over RF. This only applies to the optional broadcast of an encryption key, so it is advised to share the key with local QR code for higher security operations.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-rgqq-jvq6-w93r

больше 1 года назад

The goTenna Pro ATAK Plugin does not use SecureRandom when generating its cryptographic keys. The random function in use is not suitable for cryptographic use.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-45723

The goTenna Pro ATAK Plugin does not use SecureRandom when generating passwords for sharing cryptographic keys. The random function in use makes it easier for attackers to brute force this password if the broadcasted encryption key is captured over RF. This only applies to the optional broadcast of an encryption key, so it is advised to share the key with local QR code for higher security operations.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-rgqq-jvq6-w93r

The goTenna Pro ATAK Plugin does not use SecureRandom when generating its cryptographic keys. The random function in use is not suitable for cryptographic use.

CVSS3: 6.5
0%
Низкий
больше 1 года назад

Уязвимостей на страницу