Vtun
by Vtun Project
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2002-1697 | Hig | 0.49 | 7.5 | 0.01 | Dec 31, 2002 | Electronic Code Book (ECB) mode in VTun 2.0 through 2.5 uses a weak encryption algorithm that produces the same ciphertext from the same plaintext blocks, which could allow remote attackers to gain sensitive information. | ||
| CVE-2002-1747 | 0.00 | — | 0.01 | Dec 31, 2002 | Vtun 2.5b1 does not authenticate forwarded packets, which allows remote attackers to inject data into user sessions without detection, and possibly control the data contents via cut-and-paste attacks on ECB. | |||
| CVE-2002-1746 | 0.00 | — | 0.01 | Dec 31, 2002 | Vtun 2.5b1 allows remote attackers to inject data into user sessions by sniffing and replaying packets. |
- risk 0.49cvss 7.5epss 0.01
Electronic Code Book (ECB) mode in VTun 2.0 through 2.5 uses a weak encryption algorithm that produces the same ciphertext from the same plaintext blocks, which could allow remote attackers to gain sensitive information.
- CVE-2002-1747Dec 31, 2002risk 0.00cvss —epss 0.01
Vtun 2.5b1 does not authenticate forwarded packets, which allows remote attackers to inject data into user sessions without detection, and possibly control the data contents via cut-and-paste attacks on ECB.
- CVE-2002-1746Dec 31, 2002risk 0.00cvss —epss 0.01
Vtun 2.5b1 allows remote attackers to inject data into user sessions by sniffing and replaying packets.