CVE-2012-4687

high

Description

Post Oak AWAM Bluetooth Reader Traffic System does not use a sufficient source of entropy for private keys, which makes it easier for man-in-the-middle attackers to spoof a device by predicting a key value.

References

https://www.cisa.gov/news-events/ics-advisories/icsa-12-335-01

http://www.us-cert.gov/control_systems/pdf/ICSA-12-335-01.pdf

http://www.postoaktraffic.com/contact.aspx

Details

Source: Mitre, NVD

Published: 2012-12-08

Updated: 2025-07-09

Risk Information

CVSS v2

Base Score: 7.6

Vector: CVSS2#AV:N/AC:H/Au:N/C:C/I:C/A:C

Severity: High

EPSS

EPSS: 0.00344