AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2015-3963

MEDIUM · CVSS 5.8 EPSS 3.74%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2015-08-04 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2015-3963
Severity
MEDIUM
CVSS
5.8
EPSS
3.74%

Original NVD Description

Wind River VxWorks before 5.5.1, 6.5.x through 6.7.x before 6.7.1.1, 6.8.x before 6.8.3, 6.9.x before 6.9.4.4, and 7.x before 7 ipnet_coreip 1.2.2.0, as used on Schneider Electric SAGE RTU devices before J2 and other devices, does not properly generate TCP initial sequence number (ISN) values, which makes it easier for remote attackers to spoof TCP sessions by predicting an ISN value.