Vulnerabilities
Vulnerable Software
Cisco:  >> Pix Firewall Software  Security Vulnerabilities
Cisco PIX Firewall 6.0.3 and earlier, and 6.1.x to 6.1.3, do not delete the duplicate ISAKMP SAs for a user's VPN session, which allows local users to hijack a session via a man-in-the-middle attack.
CVSS Score
6.4
EPSS Score
0.003
Published
2002-12-31
Buffer overflow in Cisco PIX Firewall 5.2.x to 5.2.8, 6.0.x to 6.0.3, 6.1.x to 6.1.3, and 6.2.x to 6.2.1 allows remote attackers to cause a denial of service via HTTP traffic authentication using (1) TACACS+ or (2) RADIUS.
CVSS Score
5.0
EPSS Score
0.011
Published
2002-12-31
Cisco IOS 12.0 through 12.2, when supporting SSH, allows remote attackers to cause a denial of service (CPU consumption) via a large packet that was designed to exploit the SSH CRC32 attack detection overflow (CVE-2001-0144).
CVSS Score
7.1
EPSS Score
0.014
Published
2002-10-04
The mailguard feature in Cisco Secure PIX Firewall 5.2(2) and earlier does not properly restrict access to SMTP commands, which allows remote attackers to execute restricted commands by sending a DATA command before sending the restricted commands.
CVSS Score
7.5
EPSS Score
0.072
Published
2000-12-11
Cisco Secure PIX Firewall 5.2(2) allows remote attackers to determine the real IP address of a target FTP server by flooding the server with PASV requests, which includes the real IP address in the response when passive mode is established.
CVSS Score
5.0
EPSS Score
0.058
Published
2000-12-11
Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send malicious packets that Firewall-1 misinterprets as a valid 227 response to a client's PASV attempt.
CVSS Score
7.5
EPSS Score
0.005
Published
2000-02-12
Cisco PIX firewall manager (PFM) on Windows NT allows attackers to connect to port 8080 on the PFM server and retrieve any file whose name and location is known.
CVSS Score
5.0
EPSS Score
0.005
Published
1998-08-31
Cisco PIX firewall and CBAC IP fragmentation attack results in a denial of service.
CVSS Score
5.0
EPSS Score
0.005
Published
1998-08-18


Contact Us

Shodan ® - All rights reserved