CVE-2020-35685
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An issue was discovered in HCC Nichestack 3.0. The code that generates Initial Sequence Numbers (ISNs) for TCP connections derives the ISN from an insufficiently random source. As a result, an attacker may be able to determine the ISN of current and future TCP connections and either hijack existing ones or spoof future ones. (Proper ISN generation should aim to follow at least the specifications outlined in RFC 6528.)
Se ha detectado un problema en HCC Nichestack versión 3.0. El código que genera Initial Sequence Numbers (ISN) para las conexiones TCP deriva el ISN de una fuente insuficientemente aleatoria. Como resultado, un atacante puede ser capaz de determinar el ISN de las conexiones TCP actuales y futuras y secuestrar las existentes o falsificar las futuras. (La generación apropiada del ISN debe tener como objetivo seguir al menos las especificaciones descritas en el RFC 6528).
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-12-24 CVE Reserved
- 2021-08-19 CVE Published
- 2024-08-04 CVE Updated
- 2024-12-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-330: Use of Insufficiently Random Values
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-789208.pdf | Mitigation |
|
https://www.forescout.com/blog/new-critical-operational-technology-vulnerabilities-found-on-nichestack | Mitigation | |
https://www.hcc-embedded.com | Product | |
https://www.kb.cert.org/vuls/id/608209 | Third Party Advisory |
|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Siemens Search vendor "Siemens" | Sentron 3wa Com190 Firmware Search vendor "Siemens" for product "Sentron 3wa Com190 Firmware" | < 2.0.0 Search vendor "Siemens" for product "Sentron 3wa Com190 Firmware" and version " < 2.0.0" | - |
Affected
| in | Siemens Search vendor "Siemens" | Sentron 3wa Com190 Search vendor "Siemens" for product "Sentron 3wa Com190" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Sentron 3wl Com35 Firmware Search vendor "Siemens" for product "Sentron 3wl Com35 Firmware" | < 1.2.0 Search vendor "Siemens" for product "Sentron 3wl Com35 Firmware" and version " < 1.2.0" | - |
Affected
| in | Siemens Search vendor "Siemens" | Sentron 3wl Com35 Search vendor "Siemens" for product "Sentron 3wl Com35" | - | - |
Safe
|
Hcc-embedded Search vendor "Hcc-embedded" | Nichestack Search vendor "Hcc-embedded" for product "Nichestack" | 3.0 Search vendor "Hcc-embedded" for product "Nichestack" and version "3.0" | - |
Affected
|