Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Innominate mGuard Smart HW before HW-101130 and BD before BD-101030, mGuard industrial RS, mGuard delta HW before HW-103060 and BD before BD-211010, mGuard PCI, mGuard blade, and EAGLE mGuard appliances with software before 7.5.0 do not use a sufficient source of entropy for private keys, which makes it easier for man-in-the-middle attackers to spoof (1) HTTPS or (2) SSH servers by predicting a key value.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Innominate Security Technologies mGuard弱熵密钥生成漏洞
Vulnerability Description
Innominate mGuard Smart HW-101130之前的HW版本和BD-101030之前的BD版本,mGuard industrial RS版本,mGuard delta HW-103060之前的HW版本和BD-211010之前的BD版本,mGuard PCI版本,mGuard blade版本和EAGLE mGuard应用程序中的软件7.5.0之前版本中存在漏洞,该漏洞源于使用了弱熵。中间人攻击者可利用该漏洞通过预测的密钥值欺骗(1)HTTPS或(2)SSH服务器。
CVSS Information
N/A
Vulnerability Type
N/A