SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2001-1505

tinc 1.0pre3 and 1.0pre4 allows remote attackers to inject data into user sessions by sniffing and replaying packets.

MEDIUM 5.0EPSS 1.37%

Does this matter?

Lower severity and a low EPSS score (1.37%). Track it; it rarely justifies an emergency change on its own.

Description

tinc 1.0pre3 and 1.0pre4 allows remote attackers to inject data into user sessions by sniffing and replaying packets.

CVSS 2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
EPSS
1.37% probability · 70th percentile
CISA KEV
Not listed
Affected
tinc/tinc
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.