Lucene search

K
cvelistMitreCVELIST:CVE-2010-1128
HistoryMar 26, 2010 - 8:00 p.m.

CVE-2010-1128

2010-03-2620:00:00
mitre
www.cve.org
4

AI Score

9.4

Confidence

High

EPSS

0.009

Percentile

83.1%

The Linear Congruential Generator (LCG) in PHP before 5.2.13 does not provide the expected entropy, which makes it easier for context-dependent attackers to guess values that were intended to be unpredictable, as demonstrated by session cookies generated by using the uniqid function.

AI Score

9.4

Confidence

High

EPSS

0.009

Percentile

83.1%