---
cve: "CVE-2023-22601"
severity: "CRITICAL"
cvss: 10.0
epss: "56%"
vendor: "InHand Networks"
kev: false
exploited: false
published: "2023-01-12 23:15:10"
tags: [cve, security, critical]
source: tsecurity.de CVE-Dossier
exported: "2026-09-06T00:26:17+02:00"
---

# CVE-2023-22601

> 10.0 CRITICAL

## Beschreibung

InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r5542, contain vulnerability CWE-330: Use of Insufficiently Random Values. They do not properly randomize MQTT ClientID parameters. An unauthorized user could calculate this parameter and use it to gather additional information about other InHand devices managed on the same cloud platform.

## CVSS-Vektor

```
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:H/A:H
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Netzwerk | bad |
| AC Komplexität | Gering | bad |
| PR Privilegien | Keine | bad |
| UI Interaktion | Keine | bad |
| S Scope | Verändert | bad |
| C Vertraulichkeit | Gering | warn |
| I Integrität | Hoch | bad |
| A Verfügbarkeit | Hoch | bad |

## Schwachstellen-Klasse

- **CWE-330** — Use of Insufficiently Random Values
  The product uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.

## Angriffsmuster (CAPEC)

- [CAPEC-59 — Session Credential Falsification through Prediction](https://capec.mitre.org/data/definitions/59.html) _(Severity: High)_
- [CAPEC-112 — Brute Force](https://capec.mitre.org/data/definitions/112.html) _(Severity: High)_
- [CAPEC-485 — Signature Spoofing by Key Recreation](https://capec.mitre.org/data/definitions/485.html) _(Severity: High)_

## ATT&CK-Techniken

- [T1110 — Brute Force](https://attack.mitre.org/techniques/T1110/)
- [T1552.004 — Unsecure Credentials: Private Keys](https://attack.mitre.org/techniques/T1552/004/)

## Referenzen

- <https://www.cisa.gov/uscert/ics/advisories/icsa-23-012-03>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2023-22601) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
