Vulnerability CVE-2015-3963


Published: 2015-08-03   Modified: 2015-08-04

Description:
Wind River VxWorks before 5.5.1, 6.5.x through 6.7.x before 6.7.1.1, 6.8.x before 6.8.3, 6.9.x before 6.9.4.4, and 7.x before 7 ipnet_coreip 1.2.2.0, as used on Schneider Electric SAGE RTU devices before J2 and other devices, does not properly generate TCP initial sequence number (ISN) values, which makes it easier for remote attackers to spoof TCP sessions by predicting an ISN value.

CVSS2 => (AV:N/AC:M/Au:N/C:P/I:N/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
5.8/10
4.9/10
8.6/10
Exploit range
Attack complexity
Authentication
Remote
Medium
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
None
Partial
Affected software
Windriver -> Vxworks 

 References:
http://www.schneider-electric.com/ww/en/download/document/SEVD-2015-162-01
http://www.securityfocus.com/bid/75302
http://www.securitytracker.com/id/1032730
http://www.securitytracker.com/id/1033181
https://ics-cert.us-cert.gov/advisories/ICSA-15-169-01
https://ics-cert.us-cert.gov/advisories/ICSA-15-169-01A
https://security.netapp.com/advisory/ntap-20160324-0001/

Copyright 2024, cxsecurity.com

 

Back to Top