CVE-2024-28957

Generation of predictable identifiers issue exists in Cente middleware TCP/IP Network Series. If this vulnerability is exploited, a remote unauthenticated attacker may interfere communications by predicting some packet header IDs of the device.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
jpcertCNA
---
---
CVEADP
---
---
CISA-ADPADP
5.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 47%
VendorProductVersion
nxtechcente_ipv6
𝑥
≤ 1.51
nxtechcente_ipv6_snmpv2
𝑥
≤ 2.30
nxtechcente_ipv6_snmpv3
𝑥
≤ 2.30
nxtechcente_tcp\/ipv4
𝑥
≤ 1.41
nxtechcente_tcp\/ipv4_snmpv2
𝑥
≤ 2.30
nxtechcente_tcp\/ipv4_snmpv3
𝑥
≤ 2.30
𝑥
= Vulnerable software versions