CNCVE编号:CNCVE-20010618 CVE编号:CAN-2001-0618 安全级别:高 漏洞中文描述: Orinoco RG-1000无线Residential网关使用最后的5个“Nerwork Name"或SSID阿拉伯数字作为默认的Wired Equivalent Privacy密钥。由于SSID在通讯期间会清楚的出现,远程攻击者可以利用这一点。 漏洞英文描述: Orinoco RG-1000 wireless Residential Gateway uses the last 5 digits of the 'Network Name' or SSID as the default Wired Equivalent Privacy (WEP) encryption key. Since the SSID occurs in the clear during communications, a remote attacker could determine 漏洞参考: Reference: BUGTRAQ:20010402 RG-1000 802.11 Residential Gateway default WEP key disclosure flaw Reference: URL:http://archives.neohapsis.com/archives/bugtraq/2001-04/0020.html Reference: XF:orinoco-rg1000-wep-key(6328) Reference: URL:http://xforce.iss.n 系统类型: 其他 漏洞类型:设计错误