Security Advisory

CVE-2026-45433

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-04 12:13:41
Last updated 2026-06-04 13:47:51
Assigner CERT-In
CVSS score not scored
State PUBLISHED

Description

This vulnerability exists in GX Earth 2022 ONT models due to the presence of hardcoded RSA private key within the device firmware. A remote attacker could exploit this vulnerability by extracting the cryptographic private key from the firmware, which could lead to decryption of HTTPS traffic and Man-in-the-Middle (MITM) attacks on the targeted device.