Rugged Operating System Private Key Disclosure Vulnerability
BID:55123
Info
Rugged Operating System Private Key Disclosure Vulnerability
| Bugtraq ID: | 55123 |
| Class: | Design Error |
| CVE: |
CVE-2012-4698 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 21 2012 12:00AM |
| Updated: | Apr 29 2013 08:51PM |
| Credit: | Justin W. Clarke |
| Vulnerable: |
RuggedCom Rugged Operating System 3.10.1 |
| Not Vulnerable: | |
Discussion
Rugged Operating System Private Key Disclosure Vulnerability
Rugged Operating System is prone to an information-disclosure vulnerability.
Attackers can exploit this issue to obtain the SSL certificate's private key and use it to decrypt SSL traffic between an end user and a RuggedCom network device.
Rugged Operating System is prone to an information-disclosure vulnerability.
Attackers can exploit this issue to obtain the SSL certificate's private key and use it to decrypt SSL traffic between an end user and a RuggedCom network device.
Exploit / POC
Rugged Operating System Private Key Disclosure Vulnerability
An attacker can exploit this issue using readily available tools.
An attacker can exploit this issue using readily available tools.
References
Rugged Operating System Private Key Disclosure Vulnerability
References:
References:
- RuggedCom Homepage (RuggedCom)