ZeroHour

CVE-2020-25193

CVSS 3.1
5.3 medium
EPSS
<1%p56
Published
()
Modified
Description

By having access to the hard-coded cryptographic key for GE Reason RT430, RT431 & RT434 GNSS clocks in firmware versions prior to version 08A06, attackers would be able to intercept and decrypt encrypted traffic through an HTTPS connection.

Vendors
ge
Products
rt430 firmware, rt431 firmware, rt434 firmware
Weakness
CWE-321, CWE-798
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.