CVE-2007-2464
- EPSS 2.33%
- Published 02.05.2007 22:19:00
- Last modified 09.04.2025 00:30:58
Race condition in Cisco Adaptive Security Appliance (ASA) and PIX 7.1 before 7.1(2)49 and 7.2 before 7.2(2)19, when using "clientless SSL VPNs," allows remote attackers to cause a denial of service (device reload) via "non-standard SSL sessions."
- EPSS 4.28%
- Published 27.07.2006 22:04:00
- Last modified 03.04.2025 01:03:51
Internet Key Exchange (IKE) version 1 protocol, as implemented on Cisco IOS, VPN 3000 Concentrators, and PIX firewalls, allows remote attackers to cause a denial of service (resource exhaustion) via a flood of IKE Phase-1 packets that exceed the sess...
CVE-2006-0515
- EPSS 9.62%
- Published 09.05.2006 10:02:00
- Last modified 03.04.2025 01:03:51
Cisco PIX/ASA 7.1.x before 7.1(2) and 7.0.x before 7.0(5), PIX 6.3.x before 6.3.5(112), and FWSM 2.3.x before 2.3(4) and 3.x before 3.1(7), when used with Websense/N2H2, allows remote attackers to bypass HTTP access restrictions by splitting the GET ...
CVE-2005-4499
- EPSS 1.91%
- Published 22.12.2005 11:03:00
- Last modified 03.04.2025 01:03:51
The Downloadable RADIUS ACLs feature in Cisco PIX and VPN 3000 concentrators, when creating an ACL on the Cisco Secure Access Control Server (CS ACS), generates a random internal name for an ACL that is also used as a hidden user name and password, w...
- EPSS 9.46%
- Published 18.11.2005 21:03:00
- Last modified 03.04.2025 01:03:51
Multiple unspecified vulnerabilities in the Internet Key Exchange version 1 (IKEv1) implementation in multiple Cisco products allow remote attackers to cause a denial of service (device reset) via certain malformed IKE packets, as demonstrated by the...