CVE Database
/

CVE-2002-1755

Back to search

CVE-2002-1755

Published: Jun 21, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

tinc 1.0pre3 and 1.0pre4 VPN does not authenticate forwarded packets, which allows remote attackers to inject data into user sessions without detection, and possibly control the data contents via cut-and-paste attacks on CBC.

VendorProductVersions

n/a

n/a

affected
n/a

References

20020109 Security flaws in tinc
mailing-list
x_refsource_BUGTRAQ
vpn-modify-packets(7868)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now