Inadequate encryption strength vulnerability in multiple routers provided by ELECOM CO.,LTD. and LOGITEC CORPORATION allows a network-adjacent unauthenticated attacker to guess the encryption key used for wireless LAN communication and intercept the communication. As for the affected products/versions, see the information provided by the vendor under [References] section.
The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.
Link | Tags |
---|---|
https://www.elecom.co.jp/news/security/20231114-01/ | third party advisory |
https://www.elecom.co.jp/news/security/20230810-01/ | third party advisory |
https://www.elecom.co.jp/news/security/20210706-01/ | third party advisory |
https://jvn.jp/en/vu/JVNVU94119876/ | third party advisory |