Vulnerabilities > CVE-2011-2683 - 7PK - Security Features vulnerability in Reseed Project Reseed

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE

Summary

reseed seeds random numbers from an insecure HTTP request to random.org during installation, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a man-in-the-middle attack.

Vulnerable Configurations

Part Description Count
Application
Reseed_Project
1

Common Weakness Enumeration (CWE)