CVE-2016-10180
30.01.2017, 04:59
An issue was discovered on the D-Link DWR-932B router. WPS PIN generation is based on srand(time(0)) seeding.
Vendor | Product | Version |
---|---|---|
dlink | dwr-932b_firmware | 02.02eu:eu |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-335 - Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG)The software uses a Pseudo-Random Number Generator (PRNG) but does not correctly manage seeds.
- CWE-330 - Use of Insufficiently Random ValuesThe software uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.