Page 3 of 26 results (0.002 seconds)

CVSS: 7.5EPSS: 0%CPEs: 20EXPL: 0

10 Sep 2002 — Information leaks in Cisco VPN 3000 Concentrator 2.x.x and 3.x.x before 3.5.4 allow remote attackers to obtain potentially sensitive information via the (1) SSH banner, (2) FTP banner, or (3) an incorrect HTTP request. • http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml •

CVSS: 7.5EPSS: 0%CPEs: 20EXPL: 0

10 Sep 2002 — Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.3, allows remote attackers to cause a denial of service (crash) via a long (1) username or (2) password to the HTML login interface. • http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml •

CVSS: 7.5EPSS: 10%CPEs: 23EXPL: 1

10 Sep 2002 — Cisco VPN 3000 Concentrator 2.2.x, 3.6(Rel), and 3.x before 3.5.5, allows remote attackers to cause a denial of service via a long user name. • https://www.exploit-db.com/exploits/21770 •

CVSS: 7.5EPSS: 0%CPEs: 23EXPL: 0

10 Sep 2002 — Cisco VPN 3000 Concentrator 2.2.x, 3.6(Rel), and 3.x before 3.5.5, allows remote attackers to cause a denial of service via (1) malformed or (2) large ISAKMP packets. • http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml •

CVSS: 7.5EPSS: 0%CPEs: 4EXPL: 0

02 Jul 2001 — Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via an IP packet with an invalid IP option. • http://www.cisco.com/warp/public/707/vpn3k-ipoptions-vuln-pub.shtml •

CVSS: 7.5EPSS: 0%CPEs: 6EXPL: 0

18 Jun 2001 — Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via a flood of invalid login requests to (1) the SSL service, or (2) the telnet service, which do not properly disconnect the user after several failed login attempts. • http://www.cisco.com/warp/public/707/vpn3k-telnet-vuln-pub.shtml • CWE-20: Improper Input Validation •