Vulnerabilities
Vulnerable Software
Tinc-Vpn:  >> Tinc  >> 1.0.34  Security Vulnerabilities
Missing message authentication in the meta-protocol in Tinc VPN version 1.0.34 and earlier allows a man-in-the-middle attack to disable the encryption of VPN packets.
CVSS Score
5.9
EPSS Score
0.003
Published
2018-10-10
tinc 1.0.30 through 1.0.34 has a broken authentication protocol, although there is a partial mitigation. This is fixed in 1.1.
CVSS Score
3.7
EPSS Score
0.004
Published
2018-10-10


Contact Us

Shodan ® - All rights reserved