Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Moxa EDR-G903 series routers with firmware before 2.11 do not use a sufficient source of entropy for (1) SSH and (2) SSL keys, which makes it easier for man-in-the-middle attackers to spoof a device or modify a client-server data stream by leveraging knowledge of a key from a product installation elsewhere.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Moxa 加密问题漏洞
Vulnerability Description
Moxa EDR-G903是摩莎(Moxa)公司的一款集防火墙/VPN于一体的安全路由器产品。 Moxa EDR-G903系列路由器固件2.11之前版本中存在漏洞,该漏洞源于程序没有对(1)SSH和(2)SSL密钥使用充分资源的熵值。通过利用产品安全在其他位置的密钥,中间人攻击者利用该漏洞伪造设备或修改客户端服务器数据流。
CVSS Information
N/A
Vulnerability Type
N/A