CVE-2012-4716
Last modified
CVE-2012-4716 is a vulnerability of currently unknown severity. N-Tron 702-W Industrial Wireless Access Point devices use the same (1) SSH and (2) HTTPS private keys across different customers' installations, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging knowledge of a key.. EPSS estimates a 1.68% chance of exploitation in the next 30 days.
Description
N-Tron 702-W Industrial Wireless Access Point devices use the same (1) SSH and (2) HTTPS private keys across different customers' installations, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging knowledge of a key.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| N-Tron | 702w Industrial Wireless Access Point | All versions |
References
- https://ics-cert.us-cert.gov/advisories/ICSA-15-160-01Third Party Advisory, US Government Resource
- https://ics-cert.us-cert.gov/advisories/ICSA-15-160-01Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2012-4716?
How severe is CVE-2012-4716?
How do I fix CVE-2012-4716?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2012
- CVE-2012-4710Invensys Wonderware Win-XML Exporter 1522.148.0.0 allows rem…
- CVE-2012-4711Buffer overflow in kingMess.exe 65.20.2003.10300 in WellinTe…
- CVE-2012-4712Moxa EDR-G903 series routers with firmware before 2.11 have …
- CVE-2012-4713Integer signedness error in RNADiagnostics.dll in Rockwell A…
- CVE-2012-4714Integer overflow in RNADiagnostics.dll in Rockwell Automatio…
- CVE-2012-4715Buffer overflow in LogReceiver.exe in Rockwell Automation RS…
- CVE-2012-4717Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2012-4718Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2012-4719Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2012-4720Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2012-4721Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2012-4722Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
Are you affected by CVE-2012-4716?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
