// For flags

CVE-2020-35685

 

Severity Score

9.1
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

An issue was discovered in HCC Nichestack 3.0. The code that generates Initial Sequence Numbers (ISNs) for TCP connections derives the ISN from an insufficiently random source. As a result, an attacker may be able to determine the ISN of current and future TCP connections and either hijack existing ones or spoof future ones. (Proper ISN generation should aim to follow at least the specifications outlined in RFC 6528.)

Se ha detectado un problema en HCC Nichestack versión 3.0. El código que genera Initial Sequence Numbers (ISN) para las conexiones TCP deriva el ISN de una fuente insuficientemente aleatoria. Como resultado, un atacante puede ser capaz de determinar el ISN de las conexiones TCP actuales y futuras y secuestrar las existentes o falsificar las futuras. (La generación apropiada del ISN debe tener como objetivo seguir al menos las especificaciones descritas en el RFC 6528).

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
None
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2020-12-24 CVE Reserved
  • 2021-08-19 CVE Published
  • 2024-08-04 CVE Updated
  • 2024-12-17 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-330: Use of Insufficiently Random Values
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Siemens
Search vendor "Siemens"
Sentron 3wa Com190 Firmware
Search vendor "Siemens" for product "Sentron 3wa Com190 Firmware"
< 2.0.0
Search vendor "Siemens" for product "Sentron 3wa Com190 Firmware" and version " < 2.0.0"
-
Affected
in Siemens
Search vendor "Siemens"
Sentron 3wa Com190
Search vendor "Siemens" for product "Sentron 3wa Com190"
--
Safe
Siemens
Search vendor "Siemens"
Sentron 3wl Com35 Firmware
Search vendor "Siemens" for product "Sentron 3wl Com35 Firmware"
< 1.2.0
Search vendor "Siemens" for product "Sentron 3wl Com35 Firmware" and version " < 1.2.0"
-
Affected
in Siemens
Search vendor "Siemens"
Sentron 3wl Com35
Search vendor "Siemens" for product "Sentron 3wl Com35"
--
Safe
Hcc-embedded
Search vendor "Hcc-embedded"
Nichestack
Search vendor "Hcc-embedded" for product "Nichestack"
3.0
Search vendor "Hcc-embedded" for product "Nichestack" and version "3.0"
-
Affected