Lucene search

K
cveMitreCVE-2005-2640
HistoryAug 23, 2005 - 4:00 a.m.

CVE-2005-2640

2005-08-2304:00:00
mitre
web.nvd.nist.gov
30
cve-2005-2640
information leak
juniper
netscreen
vpn
screenos
ike
aggressive mode
authentication

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.8

Confidence

Low

EPSS

0.031

Percentile

91.0%

Behavioral discrepancy information leak in Juniper Netscreen VPN running ScreenOS 5.2.0 and earlier, when using IKE with pre-shared key authentication, allows remote attackers to enumerate valid usernames via an IKE Aggressive Mode packet, which generates a response if the username is valid but does not respond when the username is invalid.

Affected configurations

Nvd
Node
neoterisinstant_virtual_extranetMatch3.0
OR
neoterisinstant_virtual_extranetMatch3.1
OR
neoterisinstant_virtual_extranetMatch3.2
OR
neoterisinstant_virtual_extranetMatch3.3
OR
neoterisinstant_virtual_extranetMatch3.3.1
Node
junipernetscreen_screenosMatch1.7
OR
junipernetscreen_screenosMatch1.64
OR
junipernetscreen_screenosMatch1.66
OR
junipernetscreen_screenosMatch1.66_r2
OR
junipernetscreen_screenosMatch1.73_r1
OR
junipernetscreen_screenosMatch1.73_r2
OR
junipernetscreen_screenosMatch2.0.1_r8
OR
junipernetscreen_screenosMatch2.1
OR
junipernetscreen_screenosMatch2.1_r6
OR
junipernetscreen_screenosMatch2.1_r7
OR
junipernetscreen_screenosMatch2.5
OR
junipernetscreen_screenosMatch2.5r1
OR
junipernetscreen_screenosMatch2.5r2
OR
junipernetscreen_screenosMatch2.5r6
OR
junipernetscreen_screenosMatch2.6.0
OR
junipernetscreen_screenosMatch2.6.1
OR
junipernetscreen_screenosMatch2.6.1r1
OR
junipernetscreen_screenosMatch2.6.1r2
OR
junipernetscreen_screenosMatch2.6.1r3
OR
junipernetscreen_screenosMatch2.6.1r4
OR
junipernetscreen_screenosMatch2.6.1r5
OR
junipernetscreen_screenosMatch2.6.1r6
OR
junipernetscreen_screenosMatch2.6.1r7
OR
junipernetscreen_screenosMatch2.6.1r8
OR
junipernetscreen_screenosMatch2.6.1r9
OR
junipernetscreen_screenosMatch2.6.1r10
OR
junipernetscreen_screenosMatch2.6.1r11
OR
junipernetscreen_screenosMatch2.6.1r12
OR
junipernetscreen_screenosMatch2.7.1
OR
junipernetscreen_screenosMatch2.7.1r1
OR
junipernetscreen_screenosMatch2.7.1r2
OR
junipernetscreen_screenosMatch2.7.1r3
OR
junipernetscreen_screenosMatch2.8
OR
junipernetscreen_screenosMatch2.8_r1
OR
junipernetscreen_screenosMatch2.10_r3
OR
junipernetscreen_screenosMatch2.10_r4
OR
junipernetscreen_screenosMatch3.0.0
OR
junipernetscreen_screenosMatch3.0.0r1
OR
junipernetscreen_screenosMatch3.0.0r2
OR
junipernetscreen_screenosMatch3.0.0r3
OR
junipernetscreen_screenosMatch3.0.0r4
OR
junipernetscreen_screenosMatch3.0.1
OR
junipernetscreen_screenosMatch3.0.1r1
OR
junipernetscreen_screenosMatch3.0.1r2
OR
junipernetscreen_screenosMatch3.0.1r3
OR
junipernetscreen_screenosMatch3.0.1r4
OR
junipernetscreen_screenosMatch3.0.1r5
OR
junipernetscreen_screenosMatch3.0.1r6
OR
junipernetscreen_screenosMatch3.0.1r7
OR
junipernetscreen_screenosMatch3.0.2
OR
junipernetscreen_screenosMatch3.0.3
OR
junipernetscreen_screenosMatch3.0.3_r1.1
OR
junipernetscreen_screenosMatch3.0.3r1
OR
junipernetscreen_screenosMatch3.0.3r2
OR
junipernetscreen_screenosMatch3.0.3r3
OR
junipernetscreen_screenosMatch3.0.3r4
OR
junipernetscreen_screenosMatch3.0.3r5
OR
junipernetscreen_screenosMatch3.0.3r6
OR
junipernetscreen_screenosMatch3.0.3r7
OR
junipernetscreen_screenosMatch3.0.3r8
OR
junipernetscreen_screenosMatch3.1.0
OR
junipernetscreen_screenosMatch3.1.0r1
OR
junipernetscreen_screenosMatch3.1.0r2
OR
junipernetscreen_screenosMatch3.1.0r3
OR
junipernetscreen_screenosMatch3.1.0r4
OR
junipernetscreen_screenosMatch3.1.0r5
OR
junipernetscreen_screenosMatch3.1.0r6
OR
junipernetscreen_screenosMatch3.1.0r7
OR
junipernetscreen_screenosMatch3.1.0r8
OR
junipernetscreen_screenosMatch3.1.0r9
OR
junipernetscreen_screenosMatch3.1.0r10
OR
junipernetscreen_screenosMatch3.1.0r11
OR
junipernetscreen_screenosMatch3.1.0r12
OR
junipernetscreen_screenosMatch3.1.1_r2
OR
junipernetscreen_screenosMatch4.0.0
OR
junipernetscreen_screenosMatch4.0.0dial
OR
junipernetscreen_screenosMatch4.0.0r1
OR
junipernetscreen_screenosMatch4.0.0r2
OR
junipernetscreen_screenosMatch4.0.0r3
OR
junipernetscreen_screenosMatch4.0.0r4
OR
junipernetscreen_screenosMatch4.0.0r5
OR
junipernetscreen_screenosMatch4.0.0r6
OR
junipernetscreen_screenosMatch4.0.0r7
OR
junipernetscreen_screenosMatch4.0.0r8
OR
junipernetscreen_screenosMatch4.0.0r9
OR
junipernetscreen_screenosMatch4.0.0r10
OR
junipernetscreen_screenosMatch4.0.0r11
OR
junipernetscreen_screenosMatch4.0.0r12
OR
junipernetscreen_screenosMatch4.0.1
OR
junipernetscreen_screenosMatch4.0.1r1
OR
junipernetscreen_screenosMatch4.0.1r2
OR
junipernetscreen_screenosMatch4.0.1r3
OR
junipernetscreen_screenosMatch4.0.1r4
OR
junipernetscreen_screenosMatch4.0.1r5
OR
junipernetscreen_screenosMatch4.0.1r6
OR
junipernetscreen_screenosMatch4.0.1r7
OR
junipernetscreen_screenosMatch4.0.1r8
OR
junipernetscreen_screenosMatch4.0.1r9
OR
junipernetscreen_screenosMatch4.0.1r10
OR
junipernetscreen_screenosMatch4.0.2
OR
junipernetscreen_screenosMatch4.0.3
OR
junipernetscreen_screenosMatch4.0.3r1
OR
junipernetscreen_screenosMatch4.0.3r2
OR
junipernetscreen_screenosMatch4.0.3r3
OR
junipernetscreen_screenosMatch4.0.3r4
OR
junipernetscreen_screenosMatch5.0.0
OR
junipernetscreen_screenosMatch5.1.0
OR
junipernetscreen_screenosMatch5.1.0r3a
OR
junipernetscreen_screenosMatch5.2.0
OR
netscreenns-10
OR
netscreenns-100Match3.0_.pe1.0
OR
netscreenns-204Match5.0.0_r6.0
OR
netscreenns-204Match0110.0_11_4.0_r10.0
OR
netscreenns-204Match0110.0_11_5.1.0_r3a
OR
netscreenns-500Match4110.0_11_4.0_r10.0
OR
netscreenns-500Match4110.0_11_5.1.0_r3a
OR
netscreenns-50ns25Match5.0.0_r6.0
Node
junipernetscreen-5gtMatch5.0
OR
junipernetscreen-idpMatch3.0
OR
junipernetscreen-idpMatch3.0r1
OR
junipernetscreen-idpMatch3.0r2
OR
junipernetscreen-idp_10Match3.0.1_r1
OR
junipernetscreen-idp_100Match3.0.1_r1
OR
junipernetscreen-idp_1000Match3.0.1_r1
OR
junipernetscreen-idp_500Match3.0.1_r1
OR
netscreennetscreen-sa_5000_series
OR
netscreennetscreen-sa_5020_seriesMatch4.2_r2.2
OR
netscreennetscreen-sa_5050_seriesMatch4.2_r2.2
VendorProductVersionCPE
neoterisinstant_virtual_extranet3.0cpe:2.3:a:neoteris:instant_virtual_extranet:3.0:*:*:*:*:*:*:*
neoterisinstant_virtual_extranet3.1cpe:2.3:a:neoteris:instant_virtual_extranet:3.1:*:*:*:*:*:*:*
neoterisinstant_virtual_extranet3.2cpe:2.3:a:neoteris:instant_virtual_extranet:3.2:*:*:*:*:*:*:*
neoterisinstant_virtual_extranet3.3cpe:2.3:a:neoteris:instant_virtual_extranet:3.3:*:*:*:*:*:*:*
neoterisinstant_virtual_extranet3.3.1cpe:2.3:a:neoteris:instant_virtual_extranet:3.3.1:*:*:*:*:*:*:*
junipernetscreen_screenos1.7cpe:2.3:o:juniper:netscreen_screenos:1.7:*:*:*:*:*:*:*
junipernetscreen_screenos1.64cpe:2.3:o:juniper:netscreen_screenos:1.64:*:*:*:*:*:*:*
junipernetscreen_screenos1.66cpe:2.3:o:juniper:netscreen_screenos:1.66:*:*:*:*:*:*:*
junipernetscreen_screenos1.66_r2cpe:2.3:o:juniper:netscreen_screenos:1.66_r2:*:*:*:*:*:*:*
junipernetscreen_screenos1.73_r1cpe:2.3:o:juniper:netscreen_screenos:1.73_r1:*:*:*:*:*:*:*
Rows per page:
1-10 of 1331

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.8

Confidence

Low

EPSS

0.031

Percentile

91.0%

Related for CVE-2005-2640