5

CVE-2002-1511

The vncserver wrapper for vnc before 3.3.3r2-21 uses the rand() function instead of srand(), which causes vncserver to generate weak cookies.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AttVnc Version3.3.3
AttVnc Version3.3.3r2
AttVnc Version3.3.4
AttVnc Version3.3.5
AttVnc Version3.3.6
TightvncTightvnc Version1.2.0
TightvncTightvnc Version1.2.1
TightvncTightvnc Version1.2.2
TightvncTightvnc Version1.2.3
TightvncTightvnc Version1.2.4
TightvncTightvnc Version1.2.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.95% 0.742
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N