CVE-2021-3692
EUVD-2021-212810.08.2021, 17:15
yii2 is vulnerable to Use of Predictable Algorithm in Random Number GeneratorEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| yiiframework | yii | 2.0.0 ≤ 𝑥 < 2.0.43 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-1241 - Use of Predictable Algorithm in Random Number GeneratorThe device uses an algorithm that is predictable and generates a pseudo-random number.
- CWE-330 - Use of Insufficiently Random ValuesThe software uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.