7.5

CVE-2002-1107

Cisco Virtual Private Network (VPN) Client software 2.x.x, and 3.x before 3.5.2B, does not generate sufficiently random numbers, which may make it vulnerable to certain attacks such as spoofing.

Data is provided by the National Vulnerability Database (NVD)
CiscoVpn Client Version2.0 Editionwindows
CiscoVpn Client Version3.0 Editionwindows
CiscoVpn Client Version3.0.5 Editionwindows
CiscoVpn Client Version3.1 Editionwindows
CiscoVpn Client Version3.5.1 Editionlinux
CiscoVpn Client Version3.5.1 Editionmac_os_x
CiscoVpn Client Version3.5.1 Editionsolaris
CiscoVpn Client Version3.5.1 Editionwindows
CiscoVpn Client Version3.5.1c Editionwindows
CiscoVpn Client Version3.5.2 Editionlinux
CiscoVpn Client Version3.5.2 Editionmac_os_x
CiscoVpn Client Version3.5.2 Editionsolaris
CiscoVpn Client Version3.5.2 Editionwindows
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.53% 0.644
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P