7.5

CVE-2002-1107

Cisco Virtual Private Network (VPN) Client software 2.x.x, and 3.x before 3.5.2B, does not generate sufficiently random numbers, which may make it vulnerable to certain attacks such as spoofing.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiscoVpn Client Version2.0 Editionwindows
CiscoVpn Client Version3.0 Editionwindows
CiscoVpn Client Version3.0.5 Editionwindows
CiscoVpn Client Version3.1 Editionwindows
CiscoVpn Client Version3.5.1 Editionlinux
CiscoVpn Client Version3.5.1 Editionmac_os_x
CiscoVpn Client Version3.5.1 Editionsolaris
CiscoVpn Client Version3.5.1 Editionwindows
CiscoVpn Client Version3.5.1c Editionwindows
CiscoVpn Client Version3.5.2 Editionlinux
CiscoVpn Client Version3.5.2 Editionmac_os_x
CiscoVpn Client Version3.5.2 Editionsolaris
CiscoVpn Client Version3.5.2 Editionwindows
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.53% 0.644
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P