NA

CVE-2022-34746

Published: 20/09/2022 Updated: 22/09/2022
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 0

Vulnerability Summary

An insufficient entropy vulnerability caused by the improper use of randomness sources with low entropy for RSA key pair generation was found in Zyxel GS1900 series firmware versions prior to V2.70. This vulnerability could allow an unauthenticated malicious user to retrieve a private key by factoring the RSA modulus N in the certificate of the web administration interface.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zyxel gs1900-8_firmware

zyxel gs1900-8hp_firmware

zyxel gs1900-10hp_firmware

zyxel gs1900-16_firmware

zyxel gs1900-24_firmware

zyxel gs1900-24e_firmware

zyxel gs1900-24ep_firmware

zyxel gs1900-24hpv2_firmware

zyxel gs1900-48_firmware

zyxel gs1900-48hpv2_firmware