1.9
CVSSv2

CVE-2020-25082

Published: 10/08/2021 Updated: 17/08/2021
CVSS v2 Base Score: 1.9 | Impact Score: 2.9 | Exploitability Score: 3.4
CVSS v3 Base Score: 3.8 | Impact Score: 3.6 | Exploitability Score: 0.2
VMScore: 169
Vector: AV:L/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

An attacker with physical access to Nuvoton Trusted Platform Module (NPCT75x 7.2.x prior to 7.2.2.0) could extract an Elliptic Curve Cryptography (ECC) private key via a side-channel attack against ECDSA, because of an Observable Timing Discrepancy.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

nuvoton npct75x_firmware