Vulnerability Details CVE-2002-1102
The LAN-to-LAN IPSEC capability for Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.4, allows remote attackers to cause a denial of service via an incoming LAN-to-LAN connection with an existing security association with another device on the remote network, which causes the concentrator to remove the previous connection.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 71.6%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2002-1102
-
cpe:2.3:a:cisco:vpn_3002_hardware_client:-
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:2.0
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:2.5.2.a
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:2.5.2.b
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:2.5.2.c
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:2.5.2.d
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:2.5.2.f
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.0
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.0(rel)
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.0.3.a
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.0.3.b
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.0.4
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.1
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.1(rel)
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.1.1
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.1.2
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.1.4
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.5(rel)
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.5.1
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.5.2
-
cpe:2.3:o:cisco:vpn_3000_concentrator_series_software:3.5.3