Vulnerabilities
Vulnerable Software
Nortel:  >> Contivity  >> 5.01  Security Vulnerabilities
Nortel VPN client 5.01 stores the cleartext password in the memory of the Extranet.exe process, which could allow local users to obtain sensitive information.
CVSS Score
4.6
EPSS Score
0.001
Published
2005-05-02
Nortel Contivity VPN Client 2.1.7, 3.00, 3.01, 4.91, and 5.01, when opening a VPN tunnel, does not check the gateway certificate until after a dialog box has been displayed to the user, which creates a race condition that allows remote attackers to perform a man-in-the-middle (MITM) attack.
CVSS Score
4.0
EPSS Score
0.003
Published
2004-12-31


Contact Us

Shodan ® - All rights reserved