Vulnerability Description
WinCE 3.0.9348 generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows Embedded Compact | 3.0.9348 |
References
- http://www.cs.jhu.edu/~seny/pubs/wince802.pdfExploitVendor Advisory
- http://www.cs.jhu.edu/~seny/pubs/wince802.pdfExploitVendor Advisory
FAQ
What is CVE-2001-0162?
CVE-2001-0162 is a vulnerability with a CVSS score of 7.5 (HIGH). WinCE 3.0.9348 generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.
How severe is CVE-2001-0162?
CVE-2001-0162 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-0162?
Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Windows Embedded Compact.