Impact
A flaw in the factory reset process of GNCC GP5 firmware 7.1.76 leads to cryptographic material remaining in the JFFS2 configuration partition. If an attacker can trigger a factory reset, the sensitive data may be recovered, compromising confidentiality of user information. This weakness is consistent with weaknesses that expose secret data because it is not properly cleared during a reset operation.
Affected Systems
GNCC GP5 devices running firmware version 7.1.76 are affected. The vulnerability specifically impacts the factory reset functionality of this firmware version and does not appear in other releases according to the information available.
Risk and Exploitability
The attack vector likely requires local access or the ability to initiate a factory reset on the device, either through a physical reset button or via a management interface that allows reset. While the EPSS score is unavailable and the issue is not listed in CISA KEV, the potential to recover sensitive cryptographic data constitutes a high confidentiality risk if the reset can be performed by an unauthorized party. No exploit code is currently disclosed, but the vulnerability could be leveraged by an attacker with physical or privileged access.
OpenCVE Enrichment