CVE-2002-1092
published 2002-10-04CVE-2002-1092: Cisco VPN 3000 Concentrator 3.6(Rel) and earlier, and 2.x.x, when configured to use internal authentication with group accounts and without any user accounts…
PriorityP429high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.40%
69.2th percentile
Cisco VPN 3000 Concentrator 3.6(Rel) and earlier, and 2.x.x, when configured to use internal authentication with group accounts and without any user accounts, allows remote VPN clients to log in using PPTP or IPSEC user authentication.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | vpn_3000_concentrator_series_software | <= 3.6\(rel\) | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Suricata
GPL IMAP EXPLOIT partial body overflow attempt
suricata·2010-09-23
CVE-2002-0379 GPL IMAP EXPLOIT partial body overflow attempt
GPL IMAP EXPLOIT partial body overflow attempt
Rule: alert tcp $EXTERNAL_NET any -> $HOME_NET 143 (msg:"GPL IMAP EXPLOIT partial body overflow attempt"; dsize:>1092; flow:established,to_server; content:" x PARTIAL 1 BODY["; reference:bugtraq,4713; reference:cve,2002-0379; classtype:misc-attack; sid:2101780; rev:11; metadata:created_at 2010_09_23, cve CVE_2002_0379, confidence Medium, signature_severity Minor, updated_at 2024_03_08;)
No public exploits indexed.
No writeups or analysis indexed.
http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtmlhttp://www.securityfocus.com/bid/5613https://exchange.xforce.ibmcloud.com/vulnerabilities/10017http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtmlhttp://www.securityfocus.com/bid/5613https://exchange.xforce.ibmcloud.com/vulnerabilities/10017
2002-10-04
Published