CVE-2015-7256 describes a vulnerability in various ZyXEL access points, DSL CPEs, GPONs, small business gateways, and switches, as well as some project models, where devices use non-unique X.509 certificates and SSH host keys. This medium-severity vulnerability (CVSS 5.9) allows for potential Man-in-the-Middle (MitM) attacks due to the reuse of cryptographic keys, enabling an attacker to intercept communications without detection. While there is no known active exploitation or publicly available exploit code in Metasploit, Nuclei, or ExploitDB, the issue has garnered significant community discussion and media coverage, indicating awareness within the cybersecurity community. The EPSS score is very low, suggesting a minimal likelihood of exploitation in the wild.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:zyxel:nwa1100-n_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:zyxel:nwa1100-nh_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:zyxel:nwa1121-ni_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:zyxel:nwa1123-ac_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:zyxel:nwa1123-ni_firmware:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.