CVE-2005-2025
published 2005-06-20CVE-2005-2025: Cisco VPN 3000 Concentrator before 4.1.7.F allows remote attackers to determine valid groupnames by sending an IKE Aggressive Mode packet with the groupname in…
PriorityP420medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
2.34%
81.7th percentile
Cisco VPN 3000 Concentrator before 4.1.7.F allows remote attackers to determine valid groupnames by sending an IKE Aggressive Mode packet with the groupname in the ID field, which generates a response if the groupname is valid, but does not generate a response for an invalid groupname.
Affected
38 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
| cisco | vpn_3000_concentrator_series_software | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
cisa9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-pcwr-pc33-m7fq: The remote-access IPSec VPN implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices, PIX Security Appliances 500 series devices
ghsa_unreviewed·2022-05-17·CVSS 5.0
CVE-2010-4354 [MEDIUM] CWE-200 GHSA-pcwr-pc33-m7fq: The remote-access IPSec VPN implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices, PIX Security Appliances 500 series devices
The remote-access IPSec VPN implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices, PIX Security Appliances 500 series devices, and VPN Concentrators 3000 series devices responds to an Aggressive Mode IKE Phase I message only when the group name is configured on the device, which allows remote attackers to enumerate valid group names via a series of IKE negotiation attempts, aka Bug ID CSCtj96108, a different vulnerability than CVE-2005-2025.
GHSA
GHSA-m3gf-gx72-56g4: Cisco VPN 3000 Concentrator before 4
ghsa_unreviewed·2022-05-01
CVE-2005-2025 [MEDIUM] GHSA-m3gf-gx72-56g4: Cisco VPN 3000 Concentrator before 4
Cisco VPN 3000 Concentrator before 4.1.7.F allows remote attackers to determine valid groupnames by sending an IKE Aggressive Mode packet with the groupname in the ID field, which generates a response if the groupname is valid, but does not generate a response for an invalid groupname.
CISA
Gladinet CentreStack and Triofox Use of Hard-coded Cryptographic Key Vulnerability
cisa·2025-04-08·CVSS 9.8
CVE-2025-30406 [CRITICAL] CWE-321 Gladinet CentreStack and Triofox Use of Hard-coded Cryptographic Key Vulnerability
Vulnerability: Gladinet CentreStack and Triofox Use of Hard-coded Cryptographic Key Vulnerability
Affected: Gladinet CentreStack
Gladinet CentreStack and Triofox contains a use of hard-coded cryptographic key vulnerability in the way that the application manages keys used for ViewState integrity verification. Successful exploitation allows an attacker to forge ViewState payloads for server-side deserialization, allowing for remote code execution.
Required Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Notes: https://gladinetsupport.s3.us-east-1.amazonaws.com/gladinet/securityadvisory-cve-2005.pdf ; https://gladinetsupport.s3.us-east-1.amazonaws.com/gladinet/secu
Citrix
Citrix Security Bulletin CTX107705
vendor_citrix·CVSS 7.5
CVE-2005-3134 [HIGH] Citrix Security Bulletin CTX107705
Citrix Security Bulletin CTX107705
CVE References: CVE-2005-3134, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
Citrix
Citrix Security Bulletin CTX105574
vendor_citrix·CVSS 7.5
CVE-2005-0821 [HIGH] Citrix Security Bulletin CTX105574
Citrix Security Bulletin CTX105574
CVE References: CVE-2005-0821, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
Citrix
Citrix Security Bulletin CTX105762
vendor_citrix·CVSS 2.1
CVE-2005-0822 [LOW] Citrix Security Bulletin CTX105762
Citrix Security Bulletin CTX105762
CVE References: CVE-2005-0822, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
Citrix
Citrix Security Bulletin CTX108208
vendor_citrix·CVSS 4.3
CVE-2005-3971 [MEDIUM] Citrix Security Bulletin CTX108208
Citrix Security Bulletin CTX108208
CVE References: CVE-2005-3971, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
Citrix
Citrix Security Bulletin CTX108108
vendor_citrix·CVSS 2.1
CVE-2005-4412 [LOW] Citrix Security Bulletin CTX108108
Citrix Security Bulletin CTX108108
CVE References: CVE-2005-4412, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
Citrix
Citrix Security Bulletin CTX108354
vendor_citrix·CVSS 7.5
CVE-2005-3652 [HIGH] Citrix Security Bulletin CTX108354
Citrix Security Bulletin CTX108354
CVE References: CVE-2005-3652, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.nta-monitor.com/news/vpn-flaws/cisco/VPN-Concentrator/index.htmhttp://www.securityfocus.com/bid/13992http://www.vupen.com/english/advisories/2005/0822http://www.nta-monitor.com/news/vpn-flaws/cisco/VPN-Concentrator/index.htmhttp://www.securityfocus.com/bid/13992http://www.vupen.com/english/advisories/2005/0822
2005-06-20
Published