2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2005-2025" ,
"sourceIdentifier" : "cve@mitre.org" ,
"published" : "2005-06-20T04:00:00.000" ,
2024-11-21 23:11:37 +00:00
"lastModified" : "2024-11-20T23:58:37.943" ,
2023-04-24 12:24:31 +02:00
"vulnStatus" : "Modified" ,
2024-12-08 03:06:42 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "Cisco VPN 3000 Concentrator before 4.1.7.F allows remote attackers to determine valid groupnames by sending an IKE Aggressive Mode packet with the groupname in the ID field, which generates a response if the groupname is valid, but does not generate a response for an invalid groupname."
}
] ,
"metrics" : {
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N" ,
2024-11-21 23:11:37 +00:00
"baseScore" : 5.0 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "NETWORK" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "PARTIAL" ,
"integrityImpact" : "NONE" ,
2024-11-21 23:11:37 +00:00
"availabilityImpact" : "NONE"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "MEDIUM" ,
"exploitabilityScore" : 10.0 ,
"impactScore" : 2.9 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-Other"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:h:cisco:vpn_3000_concentrator:*:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "24BE2649-D823-486B-8F6C-4B8128EC2795"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:h:cisco:vpn_3015_concentrator:*:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0A512328-2FD0-4B1D-9327-A13A0BCE9C0D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:h:cisco:vpn_3020_concentrator:*:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D5D50FE2-A4E6-4EF4-A91C-88FB0AF6CCB4"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:h:cisco:vpn_3030_concentator:*:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6548F964-B8EE-4B39-87CF-99743D41C42C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:h:cisco:vpn_3060_concentrator:*:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E08810E6-33B6-45FF-91C7-EED10DC023EA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:h:cisco:vpn_3080_concentrator:*:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2BD1A1AC-980F-428E-8BAF-0FC821014868"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:2.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "923949D1-06EC-462F-A3BC-FCAB448042A2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:2.5.2.a:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "901B1838-7169-41E5-80EF-29BB680BF937"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:2.5.2.b:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "CDAEAA5F-0A98-48B7-8012-9B9909243135"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:2.5.2.c:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "11DA4B03-2D30-4514-9DF5-5F0DDD4B8DC8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:2.5.2.d:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "CB38834B-E4AB-43F4-888B-14B088C95594"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:2.5.2.f:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "23F8059B-3968-4D63-B1B3-74E545C918D1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "701CDA0D-F932-4251-B484-8F20F0AE9003"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.0.3.a:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E674AA43-905E-40E0-A70F-77D05C62C18D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.0.3.b:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3F0D767F-7142-46D2-B3E4-7FE8E9E3285A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.0.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "057A6BA0-5F5E-4FC4-B2EC-A17968EAC2C8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.1\\(rel\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "76F7F019-A0A4-49CD-BB28-24BF7725AC89"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.1.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "175CD875-3402-4B06-A3FA-7DFFCBB44056"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.1.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AF61B8A5-31E7-40F5-8B3D-CA90E50618AD"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.1.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "4C9017BB-5848-4361-ABB9-C69FB3AB90FC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.5\\(rel\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "207034E8-35F7-4E78-A3FC-C86D20EB8D9A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.5.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C544E523-15E5-4CE5-8113-53454F5D9973"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.5.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B09F6EBD-C3FC-4680-BE31-A766D863237D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.5.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DF8C3FDA-D321-4202-A8EA-6C1464558A8F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.5.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B68705AB-A133-401F-9F41-64594E071816"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.5.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F9092680-E154-4EAB-A2D5-B692073F894E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.6.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "ADFC9764-5BF5-449F-9200-5569C13F8309"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.6.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F12F2AAC-DB5B-4C28-86C5-F59490362E54"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.6.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "071F52AD-D59B-4673-BCBE-112B94D3EB66"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.6.7:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "80709CB0-D386-4C4F-B3EE-7A0501FD7248"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.6.7.a:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B2AFAF42-B894-4D62-A9CF-3349A43191AF"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.6.7.b:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "ABE5BB7F-D8B4-441B-9F45-56F622EEAA52"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.6.7.c:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "8B87A7EC-DC23-4075-8C4A-2317FF34BDB1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.6.7.d:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "98AC18E3-D12B-489D-9D95-6C9210235FB3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.6.7.f:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E9DB969E-8BE9-46E0-B8AA-5057E320F1ED"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.6.7d:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "36291ADE-3D5A-4E49-8BA7-B71CAAA226B9"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:4.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D953DA9F-B54E-4941-85BE-48933C98DB55"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:4.0.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "12E298AD-26AC-4E1D-83D8-5C2016CC6559"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:4.0.5.b:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B71DAF71-5763-44D8-AD1E-5ADE8BC15120"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:4.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B35B6FA9-E504-4CE3-B171-815291A812CC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:4.1.5.b:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BFA54782-93A8-47BE-863D-89CA3678BF6E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:4.1.7.a:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "67F66A10-246D-447B-941F-F1175684F0D6"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:4.1.7.b:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "82435757-D892-4298-9176-5EC1FEC93037"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:vpn_3005_concentrator_software:4.0.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "17196F00-9D7A-4AF6-AE1E-EA2E450A8ABD"
}
]
}
]
}
] ,
"references" : [
{
"url" : "http://www.nta-monitor.com/news/vpn-flaws/cisco/VPN-Concentrator/index.htm" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Exploit" ,
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://www.securityfocus.com/bid/13992" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://www.vupen.com/english/advisories/2005/0822" ,
"source" : "cve@mitre.org"
2024-11-21 23:11:37 +00:00
} ,
{
"url" : "http://www.nta-monitor.com/news/vpn-flaws/cisco/VPN-Concentrator/index.htm" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Exploit" ,
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://www.securityfocus.com/bid/13992" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://www.vupen.com/english/advisories/2005/0822" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
2023-04-24 12:24:31 +02:00
}
]
}