Remote Code Execution Vulnerability in Cisco VPN 3000 Concentrator
CVE-2005-2025

Currently unrated

What is CVE-2005-2025?

A vulnerability exists in the Cisco VPN 3000 Concentrator prior to version 4.1.7.F, which allows remote attackers to identify valid group names. By sending an IKE Aggressive Mode packet containing a group name in the ID field, an attacker can determine whether the group name is valid based on the response received. Valid group names prompt a response from the system, while invalid ones do not, thus exposing sensitive configuration information that could be exploited for further attacks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.