Hitron CODA-4582 and CODA-4589 devices have default PSKs...
Critical severity
Unreviewed
Published
Feb 24, 2024
to the GitHub Advisory Database
•
Updated Aug 16, 2024
Description
Published by the National Vulnerability Database
Feb 23, 2024
Published to the GitHub Advisory Database
Feb 24, 2024
Last updated
Aug 16, 2024
Hitron CODA-4582 and CODA-4589 devices have default PSKs that are generated from 5-digit hex values concatenated with a "Hitron" substring, resulting in insufficient entropy (only about one million possibilities).
References