CVE-2021-3689
EUVD-2021-207410.08.2021, 11:15
yii2 is vulnerable to Use of Predictable Algorithm in Random Number GeneratorEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| yiiframework | yii | 2.0.0 ≤ 𝑥 < 2.0.43 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-1241 - Use of Predictable Algorithm in Random Number GeneratorThe device uses an algorithm that is predictable and generates a pseudo-random number.
- CWE-330 - Use of Insufficiently Random ValuesThe software uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.