AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-17470

MEDIUM · CVSS 5.3 EPSS 2.07%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-12-11 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.3. See the original NVD description below for full technical details.

CVE
CVE-2020-17470
Severity
MEDIUM
CVSS
5.3
EPSS
2.07%

Original NVD Description

An issue was discovered in FNET through 4.6.4. The code that initializes the DNS client interface structure does not set sufficiently random transaction IDs (they are always set to 1 in _fnet_dns_poll in fnet_dns.c). This significantly simplifies DNS cache poisoning attacks.

Related CVEs

Other vulnerabilities affecting the same vendor(s)