Логотип exploitDog
bind:CVE-2024-47126
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-47126

Количество 2

Количество 2

nvd логотип

CVE-2024-47126

больше 1 года назад

The goTenna Pro App does not use SecureRandom when generating passwords for sharing cryptographic keys. The random function in use makes it easier for attackers to brute force this password if the broadcasted encryption key is captured over RF. This only applies to the optional broadcast of an encryption key, so it is advised to share the key with local QR code for higher security operations.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-7vrc-hc62-3f49

больше 1 года назад

The goTenna Pro series does not use SecureRandom when generating its cryptographic keys. The random function in use is not suitable for cryptographic use.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-47126

The goTenna Pro App does not use SecureRandom when generating passwords for sharing cryptographic keys. The random function in use makes it easier for attackers to brute force this password if the broadcasted encryption key is captured over RF. This only applies to the optional broadcast of an encryption key, so it is advised to share the key with local QR code for higher security operations.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-7vrc-hc62-3f49

The goTenna Pro series does not use SecureRandom when generating its cryptographic keys. The random function in use is not suitable for cryptographic use.

CVSS3: 8.8
0%
Низкий
больше 1 года назад

Уязвимостей на страницу