Orinoco RG-1000 wireless Residential Gateway uses the last 5 digits of the 'Network Name' or SSID as the default Wired Equivalent Privacy (WEP) encryption key. Since the SSID occurs in the clear during communications, a remote attacker could determine the WEP key and decrypt RG-1000 traffic.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/6328 | vdb entry |
http://archives.neohapsis.com/archives/bugtraq/2001-04/0020.html | vendor advisory mailing list exploit |