Vulnerabilities > Gryphonconnect > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-12-09 CVE-2021-20146 Insufficiently Protected Credentials vulnerability in Gryphonconnect Gryphon Tower Firmware
An unprotected ssh private key exists on the Gryphon devices which could be used to achieve root access to a server affiliated with Gryphon's development and infrastructure.
network
low complexity
gryphonconnect CWE-522
critical
9.8