CVE Published: 12/06/2020 |
CVE Updated: 17/09/2024 |
CVE Year: 2020 Source: twcert |
Vendor: GeoVision |
Product: Door Access Control Device Status : PUBLISHED
CVE-2020-3929 Description
GeoVision Door Access Control device family employs shared cryptographic private keys for SSH and HTTPS. Attackers may conduct MITM attack with the derived keys and plaintext recover of encrypted messages.
Metrics
CVSS Version: 3.1 |
Base Score: 5.9 MEDIUM Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N