
CVE-2003-0259
https://notcve.org/view.php?id=CVE-2003-0259
08 May 2003 — Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 2.x.x through 3.6.7 allows remote attackers to cause a denial of service (reload) via a malformed SSH initialization packet. Concentradores de Cisco de la serie VPN 3000 y Cisco VPN 3002 Hardware Client 2.x.x hasta 3.6.7 permiten que atacantes remotos causen una denegación de servicio (recarga) mediante un paquete de inicialización SSH mal construído. • http://www.cisco.com/warp/public/707/cisco-sa-20030507-vpn3k.shtml •

CVE-2003-0260
https://notcve.org/view.php?id=CVE-2003-0260
08 May 2003 — Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 2.x.x through 3.6.7A allow remote attackers to cause a denial of service (slowdown and possibly reload) via a flood of malformed ICMP packets. Concentradores de Cisco de la serie VPN 3000 y Cisco VPN 3002 Hardware Client 2.x.x hasta 3.6.7A permiten que atacantes remotos causen una denegación de servicio (ralentización y posiblemente recarga) mediante una inundación con paquetes ICMP mal construídos. • http://www.cisco.com/warp/public/707/cisco-sa-20030507-vpn3k.shtml •

CVE-2002-1092
https://notcve.org/view.php?id=CVE-2002-1092
04 Oct 2002 — Cisco VPN 3000 Concentrator 3.6(Rel) and earlier, and 2.x.x, when configured to use internal authentication with group accounts and without any user accounts, allows remote VPN clients to log in using PPTP or IPSEC user authentication. • http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml •

CVE-2002-1093
https://notcve.org/view.php?id=CVE-2002-1093
04 Oct 2002 — HTML interface for Cisco VPN 3000 Concentrator 2.x.x and 3.x.x before 3.0.3(B) allows remote attackers to cause a denial of service (CPU consumption) via a long URL request. • http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml •

CVE-2002-1095
https://notcve.org/view.php?id=CVE-2002-1095
04 Oct 2002 — Cisco VPN 3000 Concentrator before 2.5.2(F), with encryption enabled, allows remote attackers to cause a denial of service (reload) via a Windows-based PPTP client with the "No Encryption" option set. • http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml •

CVE-2002-1096
https://notcve.org/view.php?id=CVE-2002-1096
04 Oct 2002 — Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.1, allows restricted administrators to obtain user passwords that are stored in plaintext in HTML source code. • http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml •

CVE-2002-1097
https://notcve.org/view.php?id=CVE-2002-1097
04 Oct 2002 — Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.2, allows restricted administrators to obtain certificate passwords that are stored in plaintext in the HTML source code for Certificate Management pages. • http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml •

CVE-2002-1098
https://notcve.org/view.php?id=CVE-2002-1098
04 Oct 2002 — Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.3, adds an "HTTPS on Public Inbound (XML-Auto)(forward/in)" rule but sets the protocol to "ANY" when the XML filter configuration is enabled, which ultimately allows arbitrary traffic to pass through the concentrator. • http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml •

CVE-2002-1099
https://notcve.org/view.php?id=CVE-2002-1099
04 Oct 2002 — Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.3, allows remote attackers to obtain potentially sensitive information without authentication by directly accessing certain HTML pages. • http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml •

CVE-2002-1102
https://notcve.org/view.php?id=CVE-2002-1102
04 Oct 2002 — The LAN-to-LAN IPSEC capability for Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.4, allows remote attackers to cause a denial of service via an incoming LAN-to-LAN connection with an existing security association with another device on the remote network, which causes the concentrator to remove the previous connection. • http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml •