CVE-2012-3039: High severity moxa oncell gateway firmware vulnerability
Moxa OnCell Gateway G3111, G3151, G3211, and G3251 devices with firmware before 1.4 do not use a sufficient source of entropy for SSH and SSL keys, which makes it easier for remote attackers to obtain access by leveraging knowledge of a key from a product installation elsewhere.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-3039?
CVE-2012-3039 is considered a high severity vulnerability due to the potential for unauthorized access to devices.
How do I fix CVE-2012-3039?
To fix CVE-2012-3039, update the firmware of Moxa OnCell Gateway devices to version 1.4 or later.
What devices are affected by CVE-2012-3039?
CVE-2012-3039 affects Moxa OnCell Gateway G3111, G3151, G3211, and G3251 devices with firmware prior to 1.4.
What is the risk associated with CVE-2012-3039?
The risk associated with CVE-2012-3039 includes increased vulnerability to remote attacks due to weak SSH and SSL key generation.
Can CVE-2012-3039 be exploited remotely?
Yes, CVE-2012-3039 can be exploited remotely by attackers who leverage knowledge of key information from other installations.