5
CVSSv2

CVE-2002-1511

Published: 03/03/2003 Updated: 10/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The vncserver wrapper for vnc prior to 3.3.3r2-21 uses the rand() function instead of srand(), which causes vncserver to generate weak cookies.

Vulnerable Product Search on Vulmon Subscribe to Product

tightvnc tightvnc 1.2.0

tightvnc tightvnc 1.2.1

tightvnc tightvnc 1.2.2

tightvnc tightvnc 1.2.3

tightvnc tightvnc 1.2.4

att vnc 3.3.4

att vnc 3.3.6

att vnc 3.3.3

att vnc 3.3.3r2

att vnc 3.3.5

tightvnc tightvnc 1.2.5