PT-2026-102766 · Unknown · Netx Secure

·

CVE-2026-102719

·

Published

2026-09-29

·

Updated

2026-09-29

CVSS v4.0

6.3

Medium

VectorAV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions NetX Secure (affected versions not specified)
Description The software generates predictable cookies during the DTLS HelloVerifyRequest process. This predictability can be exploited to bypass the cookie-based mechanism intended to prevent Denial of Service (DoS) attacks, which are attempts to make a machine or network resource unavailable to its intended users.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use of Insufficiently Random Values

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-102719
GHSA-J6GX-3J6V-3HM4

Affected Products

Netx Secure