CVE-2022-42159

D-Link COVR 1200,1202,1203 v1.08 was discovered to have a predictable seed in a Pseudo-Random Number Generator.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dlink:covr_1203_firmware:1.08:*:*:*:*:*:*:*
cpe:2.3:h:dlink:covr_1203:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:dlink:covr_1202_firmware:1.08:*:*:*:*:*:*:*
cpe:2.3:h:dlink:covr_1202:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:dlink:covr_1200_firmware:1.08:*:*:*:*:*:*:*
cpe:2.3:h:dlink:covr_1200:-:*:*:*:*:*:*:*

History

08 Aug 2023, 14:22

Type Values Removed Values Added
CWE CWE-338 CWE-335

18 Oct 2022, 12:21

Type Values Removed Values Added
First Time Dlink covr 1200 Firmware
Dlink covr 1202 Firmware
Dlink covr 1200
Dlink covr 1203 Firmware
Dlink
Dlink covr 1203
Dlink covr 1202
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.3
CWE CWE-338
CPE cpe:2.3:h:dlink:covr_1200:-:*:*:*:*:*:*:*
cpe:2.3:h:dlink:covr_1202:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:covr_1202_firmware:1.08:*:*:*:*:*:*:*
cpe:2.3:o:dlink:covr_1203_firmware:1.08:*:*:*:*:*:*:*
cpe:2.3:o:dlink:covr_1200_firmware:1.08:*:*:*:*:*:*:*
cpe:2.3:h:dlink:covr_1203:-:*:*:*:*:*:*:*
References (MISC) https://github.com/14isnot40/vul_discovery/blob/master/D-Link%20COVR%2012xx%20.pdf - (MISC) https://github.com/14isnot40/vul_discovery/blob/master/D-Link%20COVR%2012xx%20.pdf - Exploit, Third Party Advisory
References (MISC) https://www.dlink.com/en/security-bulletin/ - (MISC) https://www.dlink.com/en/security-bulletin/ - Vendor Advisory

13 Oct 2022, 19:20

Type Values Removed Values Added
New CVE

Information

Published : 2022-10-13 19:15

Updated : 2023-12-10 14:35


NVD link : CVE-2022-42159

Mitre link : CVE-2022-42159

CVE.ORG link : CVE-2022-42159


JSON object : View

Products Affected

dlink

  • covr_1203
  • covr_1200_firmware
  • covr_1200
  • covr_1202
  • covr_1202_firmware
  • covr_1203_firmware
CWE
CWE-335

Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG)