CVE-2014-5409: Ge Hydran m2
Medium severity, CVSS 5.0. EPSS: 2.7% chance of exploitation in the next 30 days.
The 17046 Ethernet card before 94450214LFMT100SEM-L.R3-CL for the GE Digital Energy Hydran M2 does not properly generate random values for TCP Initial Sequence Numbers (ISNs), which makes it easier for remote attackers to spoof packets by predicting these values.
Affected products
- Ge Hydran m2: any version
Published 2015-03-14. Last modified 2026-06-17.