OnApp Static ECDSA Keys Security Weakness
BID:67326
Info
OnApp Static ECDSA Keys Security Weakness
| Bugtraq ID: | 67326 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 09 2014 12:00AM |
| Updated: | May 09 2014 12:00AM |
| Credit: | James Renken |
| Vulnerable: |
OnApp OnApp 0 |
| Not Vulnerable: | |
Discussion
OnApp Static ECDSA Keys Security Weakness
OnApp is prone to a static ECDSA key security weakness.
An attacker may exploit this vulnerability to gain SSH sessions and perform unauthorized actions.
OnApp is prone to a static ECDSA key security weakness.
An attacker may exploit this vulnerability to gain SSH sessions and perform unauthorized actions.
Exploit / POC
OnApp Static ECDSA Keys Security Weakness
Attackers can use standard, readily available tools to exploit this issue.
Attackers can use standard, readily available tools to exploit this issue.