CVE-2019-7593: Metasys use of shared RSA key pairs
Metasys® ADS/ADX servers and NAE/NIE/NCE engines prior to 9.0 make use of a shared RSA key pair for certain encryption operations involving the Site Management Portal (SMP).
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2019-7593?
CVE-2019-7593 is a vulnerability in Metasys® ADS/ADX servers and NAE/NIE/NCE engines prior to 9.0 that make use of a shared RSA key pair for certain encryption operations involving the Site Management Portal (SMP).
How severe is CVE-2019-7593?
CVE-2019-7593 has a severity value of 9.1, which is classified as critical.
What software versions are affected by CVE-2019-7593?
Metasys® ADS/ADX servers and NAE/NIE/NCE engines prior to version 9.0 are affected by CVE-2019-7593.
What is the Common Weakness Enumeration (CWE) of CVE-2019-7593?
CVE-2019-7593 is associated with CWE-798 (Use of Hard-coded Credentials) and CWE-323 (Reusing a Nonce, Key Pair in Encryption)
Where can I find more information about CVE-2019-7593?
You can find more information about CVE-2019-7593 in the following references: [1] [2]