Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2010-5066

The createRandomPassword function in includes/functions_common.php in Virtual War (aka VWar) 1.6.1 R2 uses a small range of values to select the seed argument for the PHP mt_srand function, which makes it easier for remote attackers to determine randomly generated passwords via a brute-force attack.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 48.5%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2010-5066


Contact Us

Shodan ® - All rights reserved