CVE-2021-3689
10.08.2021, 11:15
yii2 is vulnerable to Use of Predictable Algorithm in Random Number GeneratorEnginsight
Vendor | Product | Version |
---|---|---|
yiiframework | yii | 2.0.0 ≤ 𝑥 < 2.0.43 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-1241 - Use of Predictable Algorithm in Random Number GeneratorThe device uses an algorithm that is predictable and generates a pseudo-random number.
- CWE-330 - Use of Insufficiently Random ValuesThe software uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.