CVE-2012-3372 describes a critical vulnerability in Cyberoam UTM appliances where all installations share the same default SSL CA certificate and private key. This design flaw allows a remote attacker to conduct man-in-the-middle attacks, spoofing SSL servers if the Cyberoam_SSL_CA certificate is trusted. The vulnerability carries a high CVSS score of 7.4, indicating significant potential for high impact on confidentiality and integrity with moderate attack complexity. Despite the vendor disputing its significance due to private key export restrictions, there is no public exploit code available, nor is it listed on the CISA KEV catalog, suggesting it is not actively exploited.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:elitecore:cyberoam_unified_threat_management:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.