CVE-2003-0260
https://notcve.org/view.php?id=CVE-2003-0260
Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 2.x.x through 3.6.7A allow remote attackers to cause a denial of service (slowdown and possibly reload) via a flood of malformed ICMP packets. Concentradores de Cisco de la serie VPN 3000 y Cisco VPN 3002 Hardware Client 2.x.x hasta 3.6.7A permiten que atacantes remotos causen una denegación de servicio (ralentización y posiblemente recarga) mediante una inundación con paquetes ICMP mal construídos. • http://www.cisco.com/warp/public/707/cisco-sa-20030507-vpn3k.shtml http://www.kb.cert.org/vuls/id/221164 https://exchange.xforce.ibmcloud.com/vulnerabilities/11956 •
CVE-2003-0259
https://notcve.org/view.php?id=CVE-2003-0259
Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 2.x.x through 3.6.7 allows remote attackers to cause a denial of service (reload) via a malformed SSH initialization packet. Concentradores de Cisco de la serie VPN 3000 y Cisco VPN 3002 Hardware Client 2.x.x hasta 3.6.7 permiten que atacantes remotos causen una denegación de servicio (recarga) mediante un paquete de inicialización SSH mal construído. • http://www.cisco.com/warp/public/707/cisco-sa-20030507-vpn3k.shtml http://www.kb.cert.org/vuls/id/317348 https://exchange.xforce.ibmcloud.com/vulnerabilities/11955 •
CVE-2003-0258
https://notcve.org/view.php?id=CVE-2003-0258
Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 3.5.x through 4.0.REL, when enabling IPSec over TCP for a port on the concentrator, allow remote attackers to reach the private network without authentication. Concentradores de Cisco de la serie VPN 3000 y Cisco VPN 3002 Hardware Client 2.x.x hasta 4.0.REL, cuando se configuran para permitir IPSec sobre TCP para un puerto del concentrador, permiten que atacantes remotos alcancen la red privada sin autentificación. • http://www.cisco.com/warp/public/707/cisco-sa-20030507-vpn3k.shtml http://www.kb.cert.org/vuls/id/727780 https://exchange.xforce.ibmcloud.com/vulnerabilities/11954 •
CVE-2002-1491
https://notcve.org/view.php?id=CVE-2002-1491
The Cisco VPN 5000 Client for MacOS before 5.2.2 records the most recently used login password in plaintext when saving "Default Connection" settings, which could allow local users to gain privileges. El cliente Cisco VPN 5000 para MacOS anteriores a la 5.2.2 almacena las contraseñas de acceso más reciente en texto plano al guardar los parámetros de conexión por defecto (Default Connection), lo cual podría permitir a usuarios locales obtener privilegios. • http://www.cisco.com/warp/public/707/vpn5k-client-multiple-vuln-pub.shtml http://www.iss.net/security_center/static/10129.php http://www.osvdb.org/7041 http://www.securityfocus.com/bid/5736 •
CVE-2002-1492 – Cisco VPN 5000 Client - Buffer Overrun
https://notcve.org/view.php?id=CVE-2002-1492
Buffer overflows in the Cisco VPN 5000 Client before 5.2.7 for Linux, and VPN 5000 Client before 5.2.8 for Solaris, allow local users to gain root privileges via (1) close_tunnel and (2) open_tunnel. Desbordamiento de búfer en el cliente Cisco VPN 5000 anteriores a la 5.2.7 para Linux y cliente VPN 5000 Client anteriores a la 5.2.8 para Solaris, permite a usuarios locales la obtención de privilegios de root mediante: close_tunnel y open_tunnel. • https://www.exploit-db.com/exploits/21805 https://www.exploit-db.com/exploits/21806 http://www.cisco.com/warp/public/707/vpn5k-client-multiple-vuln-pub.shtml http://www.iss.net/security_center/static/10131.php http://www.securityfocus.com/bid/5734 •