CVE-2001-0162: High severity Microsoft Windows Embedded Compact vulnerability
Published Jan 1, 2001
·Updated
WinCE 3.0.9348 generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.
Affected Software
2 affected components
Microsoft Windows Embedded Compact=3.0.9348
Microsoft Windows CE=3.0.9348
Event History
Jan 1, 2001
CVE Published
05:00 AM
Apr 14, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0162?
CVE-2001-0162 has a medium severity level due to the potential for TCP connection spoofing and hijacking.
2
How do I fix CVE-2001-0162?
Fixing CVE-2001-0162 involves upgrading to a version of Windows CE that employs unpredictable TCP Initial Sequence Numbers.
3
What does CVE-2001-0162 affect?
CVE-2001-0162 affects Microsoft Windows CE and Windows Embedded Compact version 3.0.9348.
4
What type of attack is possible due to CVE-2001-0162?
CVE-2001-0162 allows remote attackers to spoof or hijack active TCP connections.
5
Is CVE-2001-0162 still a concern today?
While CVE-2001-0162 is dated, systems using the vulnerable versions remain at risk for exploitation if not updated.