Vulnerabilities (CVE)

Filtered by vendor Tinc Subscribe
Filtered by product Tinc
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-1755 1 Tinc 1 Tinc 2024-02-04 5.0 MEDIUM N/A
tinc 1.0pre3 and 1.0pre4 VPN does not authenticate forwarded packets, which allows remote attackers to inject data into user sessions without detection, and possibly control the data contents via cut-and-paste attacks on CBC.
CVE-2001-1505 1 Tinc 1 Tinc 2024-02-04 5.0 MEDIUM N/A
tinc 1.0pre3 and 1.0pre4 allows remote attackers to inject data into user sessions by sniffing and replaying packets.