CVE-2020-3929
12.06.2020, 09:15
GeoVision Door Access Control device family employs shared cryptographic private keys for SSH and HTTPS. Attackers may conduct MITM attack with the derived keys and plaintext recover of encrypted messages.Enginsight
Vendor | Product | Version |
---|---|---|
usavisionsys | geovision_gv-as210_firmware | 𝑥 < 2.21 |
usavisionsys | geovision_gv-as410_firmware | 𝑥 < 2.21 |
usavisionsys | geovision_gv-as810_firmware | 𝑥 < 2.21 |
usavisionsys | geovision_gv-as1010_firmware | 𝑥 < 1.32 |
usavisionsys | geovision_gv-gf192x_firmware | 𝑥 < 1.10 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration