go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

Hitron CODA-5310 - Hard-coded Cryptographic Key

TVN ID TVN-202212006
CVE ID CVE-2022-47617
CVSS 7.2(High)
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected Products Hitron CODA-5310 all version
Description Hitron CODA-5310 has hard-coded encryption/decryption keys in the program code. A remote attacker authenticated as an administrator can decrypt system files using the hard-coded keys for file access, modification, and cause service disruption.
Solution Hitron Technologies Inc. has provided a problem-solving version to the internet service provider and informed them to upgrade. If there are any issues, please contact the network provider.
Credit Zet (Cymetrics)
Public Date 2023-05-02
Top