CVE-2021-27450: Weak Encryption
SSH server configuration file does not implement some best practices. This could lead to a weakening of the SSH protocol strength, which could lead to additional misconfiguration or be leveraged as part of a larger attack on the MU320E (all firmware versions prior to v04A00.1).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-27450?
CVE-2021-27450 refers to a vulnerability in the SSH server configuration file on the Ge MU320E firmware, which could weaken the SSH protocol strength and potentially be exploited in a larger attack.
How does the SSH server configuration file on the Ge MU320E firmware implement best practices?
The SSH server configuration file does not implement some best practices, which could lead to a weakening of the SSH protocol strength.
What is the severity of CVE-2021-27450?
The severity of CVE-2021-27450 is high with a CVSS score of 7.8.
How can CVE-2021-27450 be exploited?
CVE-2021-27450 could be leveraged as part of a larger attack on the Ge MU320E firmware, potentially leading to additional misconfiguration or compromise.
How can I mitigate CVE-2021-27450?
To mitigate CVE-2021-27450, it is recommended to update the Ge MU320E firmware to version 04A00.1 or later.