First published: Thu Feb 17 2022(Updated: )
The use of a hard-coded cryptographic key significantly increases the possibility encrypted data may be recovered from ASUS CMAX6000 v1.02.00.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Asus Cmax6000 Firmware | =1.02.00 | |
ASUS CMAX6000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-46247 is rated as a high severity vulnerability due to the use of a hard-coded cryptographic key.
To mitigate CVE-2021-46247, update the ASUS CMAX6000 firmware to a newer version that does not contain the hard-coded key.
CVE-2021-46247 specifically affects ASUS CMAX6000 with firmware version 1.02.00.
The potential impacts of CVE-2021-46247 include the possibility of unauthorized access to encrypted data due to the insecure cryptographic key.
Using ASUS CMAX6000 with firmware version 1.02.00 in production is unsafe due to the high risk posed by CVE-2021-46247.