← volver
CVE-2014-9196

Eaton’s Cooper Power Series Form 6 Control and Idea/IdeaPlus Relays with Ethernet

CVSS 7.6 EPSS 2.3%CWE-342
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 7.6EPSS 2.3%KEV nãoPoC Patch
Ciclo de vida
20 jul 2015Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Eaton Cooper Power Systems ProView 4.0 and 5.0 before 5.0 11 on Form 6 controls and Idea and IdeaPLUS relays generates TCP initial sequence number (ISN) values linearly, which makes it easier for remote attackers to spoof TCP sessions by predicting an ISN value.
AV:N/AC:H/Au:N/C:C/I:C/A:C

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →