ZeroHour

CVE-2019-12258

CVSS 3.1
7.5 high
EPSS
23%p98
Published
()
Modified
Description

Wind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component. This is a IPNET security vulnerability: DoS of TCP connection via malformed TCP options.

Vendors
windriversonicwallsiemensnetappbelden
Products
vxworks, sonicos, siprotec 5 firmware, e-series santricity os controller, power meter 9410 firmware, power meter 9810 firmware, ruggedcom win7000 firmware, ruggedcom win7018 firmware, ruggedcom win7025 firmware, ruggedcom win7200 firmware, hirschmann hios, garrettcom magnum dx940e firmware
Weakness
CWE-384
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news