{ "id": "CVE-2019-19751", "sourceIdentifier": "cve@mitre.org", "published": "2024-04-30T18:15:19.323", "lastModified": "2024-11-21T04:35:19.033", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ { "lang": "en", "value": "easyMINE before 2019-12-05 ships with SSH host keys baked into the installation image, which allows man-in-the-middle attacks and makes identification of all public IPv4 nodes trivial with Shodan.io." }, { "lang": "es", "value": "easyMINE antes del 5 de diciembre de 2019 se env\u00eda con claves de host SSH integradas en la imagen de instalaci\u00f3n, lo que permite ataques de intermediario y hace que la identificaci\u00f3n de todos los nodos IPv4 p\u00fablicos sea trivial con Shodan.io." } ], "metrics": {}, "weaknesses": [ { "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "type": "Secondary", "description": [ { "lang": "en", "value": "CWE-300" } ] } ], "references": [ { "url": "https://blog.easymine.io", "source": "cve@mitre.org" }, { "url": "https://rsaxvc.net/blog/2020/4/10/Widespread_re-use_of_SSH_Host_Keys_in_Ethereum_Mining_Rig_Operating_Systems.html", "source": "cve@mitre.org" }, { "url": "https://blog.easymine.io", "source": "af854a3a-2127-422b-91ae-364da2661108" }, { "url": "https://rsaxvc.net/blog/2020/4/10/Widespread_re-use_of_SSH_Host_Keys_in_Ethereum_Mining_Rig_Operating_Systems.html", "source": "af854a3a-2127-422b-91ae-364da2661108" } ] }