PoC Index

CVE-2000-0916

HIGH 7.5EPSS 5.5%

FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (ISN), which allows remote attackers to spoof TCP connections.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
5.55% chance of exploitation in the next 30 days, 92th percentile
Published
2000-11-29
Updated
2024-08-08

ExploitDB entries (1)

References

Related