Vulnerability Description
Because of hard-coded SSH keys for the root user in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series, Kami7B, an attacker may remotely log in through SSH.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Amino | Ak45X Firmware | - |
| Amino | Ak45X | - |
| Amino | Ak5Xx Firmware | - |
| Amino | Ak5Xx | - |
| Amino | Ak65X Firmware | - |
| Amino | Ak65X | - |
| Amino | Aria6Xx Firmware | - |
| Amino | Aria6Xx | - |
| Amino | Aria7Xx Firmware | - |
| Amino | Aria7Xx | - |
| Amino | Kami7B Firmware | - |
| Amino | Kami7B | - |
Related Weaknesses (CWE)
References
- https://andre-oudhof.medium.com/pwning-my-isps-stbs-c5e78544274d#1ab7ExploitThird Party Advisory
- https://andre-oudhof.medium.com/pwning-my-isps-stbs-c5e78544274d#1ab7ExploitThird Party Advisory
FAQ
What is CVE-2020-10210?
CVE-2020-10210 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Because of hard-coded SSH keys for the root user in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series, Kami7B, an attacker may remotely log in through S...
How severe is CVE-2020-10210?
CVE-2020-10210 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-10210?
Check the references section above for vendor advisories and patch information. Affected products include: Amino Ak45X Firmware, Amino Ak45X, Amino Ak5Xx Firmware, Amino Ak5Xx, Amino Ak65X Firmware.