QNO Technology VPN Firewall Insufficient Entropy Vulnerability Allowing Session Hijacking
Vulnerability
A vulnerability in QNO Technology's VPN Firewall has been identified, characterized by insufficient entropy. This flaw allows unauthenticated remote attackers to perform brute-force attacks to obtain any logged-in user session, subsequently gaining unauthorized access to the system.
Impact
Exploitation of this vulnerability allows for unauthorized access to user accounts by hijacking active sessions.
Added: Dec 31, 2025, 9:21 AM
Updated: Dec 31, 2025, 9:21 AM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
5.0exploitability
6.6remediation
0.0relevance
1.8threat
0.0urgency
2.9incentive
1.7Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
