← Back

CVE-2022-34746

nvd nist
Published: Sep 20, 2022Modified: Nov 21, 2024

JSON object

Loading...
5.9
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.2 / Impact: 3.6
Source: NVD

Description

An insufficient entropy vulnerability caused by the improper use of randomness sources with low entropy for RSA key pair generation was found in Zyxel GS1900 series firmware versions prior to V2.70. This vulnerability could allow an unauthenticated attacker to retrieve a private key by factoring the RSA modulus N in the certificate of the web administration interface.

Affected (10)

10 products
Gs1900 8 Firmware
Gs1900 8hp Firmware
Gs1900 10hp Firmware
Gs1900 16 Firmware
Gs1900 24 Firmware
Gs1900 24e Firmware
Gs1900 24ep Firmware
Gs1900 24hpv2 Firmware
Gs1900 48 Firmware
Gs1900 48hpv2 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.70\(aahh.3\)c0
Running on/withPlatform Versions
Zyxel
Gs1900 8
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.70\(aahi.3\)c0
Running on/withPlatform Versions
Zyxel
Gs1900 8hp
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.70\(aazi.3\)c0
Running on/withPlatform Versions
Zyxel
Gs1900 10hp
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.70\(aahj.3\)c0
Running on/withPlatform Versions
Zyxel
Gs1900 16
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.70\(aahl.3\)c0
Running on/withPlatform Versions
Zyxel
Gs1900 24
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.70\(aahk.3\)c0
Running on/withPlatform Versions
Zyxel
Gs1900 24e
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.70\(abto.3\)c0
Running on/withPlatform Versions
Zyxel
Gs1900 24ep
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.70\(abtp.3\)c0
Running on/withPlatform Versions
Zyxel
Gs1900 24hpv2
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.70\(aahn.3\)c0
Running on/withPlatform Versions
Zyxel
Gs1900 48
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.70\(abtq.3\)c0
Running on/withPlatform Versions
Zyxel
Gs1900 48hpv2
All versions

Timeline

No history available yet.