Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2004-0155

The KAME IKE Daemon Racoon, when authenticating a peer during Phase 1, validates the X.509 certificate but does not verify the RSA signature authentication, which allows remote attackers to establish unauthorized IP connections or conduct man-in-the-middle attacks using a valid, trusted X.509 certificate.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.049
EPSS Ranking 89.1%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2004-0155
  • Kame » Racoon » Version: Any
    cpe:2.3:a:kame:racoon:*


Contact Us

Shodan ® - All rights reserved