5

CVE-2002-1511

The vncserver wrapper for vnc before 3.3.3r2-21 uses the rand() function instead of srand(), which causes vncserver to generate weak cookies.

Data is provided by the National Vulnerability Database (NVD)
AttVnc Version3.3.3
AttVnc Version3.3.3r2
AttVnc Version3.3.4
AttVnc Version3.3.5
AttVnc Version3.3.6
TightvncTightvnc Version1.2.0
TightvncTightvnc Version1.2.1
TightvncTightvnc Version1.2.2
TightvncTightvnc Version1.2.3
TightvncTightvnc Version1.2.4
TightvncTightvnc Version1.2.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.95% 0.742
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N