Observable timing discrepancy issue exists in IPCOM EX2 Series V01L02NF0001 to V01L06NF0401, V01L20NF0001 to V01L20NF0401, V02L20NF0001 to V02L21NF0301, and IPCOM VE2 Series V01L04NF0001 to V01L06NF0112. If this vulnerability is exploited, some of the encrypted communication may
Observable timing discrepancy issue exists in IPCOM EX2 Series V01L02NF0001 to V01L06NF0401, V01L20NF0001 to V01L20NF0401, V02L20NF0001 to V02L21NF0301, and IPCOM VE2 Series V01L04NF0001 to V01L06NF0112. If this vulnerability is exploited, some of the encrypted communication may be decrypted by an attacker who can obtain the contents of the communication.
| Vendor | Product | Versions |
|---|---|---|
| Fsas Technologies Inc. | IPCOM EX2 Series | V01L02NF0001 to V01L06NF0401 |
| Fsas Technologies Inc. | IPCOM EX2 Series | V01L20NF0001 to V01L20NF0401 |
| Fsas Technologies Inc. | IPCOM EX2 Series | V02L20NF0001 to V02L21NF0301 |
| Fsas Technologies Inc. | IPCOM VE2 Series | V01L04NF0001 to V01L06NF0112 |
Not currently listed on the CISA Known Exploited Vulnerabilities (KEV) catalog. EPSS is the best forward-looking signal — see the EPSS row above.
For the full vendor write-up, exploit chains, and reference implementations, see the references list in section 09.
Open the Sigma generator with a pre-filled prompt for this CVE to draft a starting detection in your stack of choice:
No directly-cited follow-up CVEs in the KB record for this advisory. The references list in section 09 carries the vendor cross-references.