CVE-2020-3929
12.06.2020, 09:15
GeoVision Door Access Control device family employs shared cryptographic private keys for SSH and HTTPS. Attackers may conduct MITM attack with the derived keys and plaintext recover of encrypted messages.Enginsight
| Vendor | Product | Version |
|---|---|---|
| usavisionsys | geovision_gv-as210_firmware | 𝑥 < 2.21 |
| usavisionsys | geovision_gv-as410_firmware | 𝑥 < 2.21 |
| usavisionsys | geovision_gv-as810_firmware | 𝑥 < 2.21 |
| usavisionsys | geovision_gv-as1010_firmware | 𝑥 < 1.32 |
| usavisionsys | geovision_gv-gf192x_firmware | 𝑥 < 1.10 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration