Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2002-1101

4 documents4 sources
Severity
5.0MEDIUM
EPSS
18.3%
top 4.79%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedOct 4
Latest updateApr 30

Description

Cisco VPN 3000 Concentrator 2.2.x, 3.6(Rel), and 3.x before 3.5.5, allows remote attackers to cause a denial of service via a long user name.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-3mpp-xh9p-vf59: Cisco VPN 3000 Concentrator 22022-04-30
CVEList
CVE-2002-1101: Cisco VPN 3000 Concentrator 22002-09-10

💥Exploits & PoCs

1
Exploit-DB
Cisco VPN 3000 Series Concentrator Client - Authentication Denial of Service2002-09-03