Vulnerabilities > CVE-2021-34600 - Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG) vulnerability in Telenot Compasx
Attack vector
LOCAL Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
Telenot CompasX versions prior to 32.0 use a weak seed for random number generation leading to predictable AES keys used in the NFC tags used for local authorization of users. This may lead to total loss of trustworthiness of the installation.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |