CVE-2014-2362

OleumTech WIO DH2 Wireless Gateway and Sensor Wireless I/O Modules rely exclusively on a time value for entropy in key generation, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by predicting the time of project creation.
Configurations

Configuration 1 (hide)

OR cpe:2.3:h:oleumtech:sensor_wireless_i\/o_module:-:*:*:*:*:*:*:*
cpe:2.3:h:oleumtech:wio_dh2_wireless_gateway:-:*:*:*:*:*:*:*

History

06 Oct 2025, 18:15

Type Values Removed Values Added
References
  • () http://support.oleumtech.com/ -
  • () http://www.securityfocus.com/bid/68797 -
  • () https://www.cisa.gov/news-events/ics-advisories/icsa-14-202-01a -
CWE CWE-338

21 Nov 2024, 02:06

Type Values Removed Values Added
References () http://ics-cert.us-cert.gov/advisories/ICSA-14-202-01 - Third Party Advisory, US Government Resource () http://ics-cert.us-cert.gov/advisories/ICSA-14-202-01 - Third Party Advisory, US Government Resource
References () http://www.securityfocus.com/bid/68800 - () http://www.securityfocus.com/bid/68800 -

Information

Published : 2014-07-24 14:55

Updated : 2025-10-06 18:15


NVD link : CVE-2014-2362

Mitre link : CVE-2014-2362

CVE.ORG link : CVE-2014-2362


JSON object : View

Products Affected

oleumtech

  • wio_dh2_wireless_gateway
  • sensor_wireless_i\/o_module
CWE
CWE-338

Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

NVD-CWE-Other