Lucene search

K
cve[email protected]CVE-2007-2333
HistoryApr 27, 2007 - 4:19 p.m.

CVE-2007-2333

2007-04-2716:19:00
web.nvd.nist.gov
21
nortel
vpn
router
contivity
cve-2007-2333
security
vulnerability
default accounts
ldap
remote access

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

6.7 Medium

AI Score

Confidence

Low

0.019 Low

EPSS

Percentile

88.6%

Nortel VPN Router (aka Contivity) 1000, 2000, 4000, and 5000 before 5_05.149, 5_05.3xx before 5_05.304, and 6.x before 6_05.140 includes the FIPSecryptedtest1219 and FIPSunecryptedtest1219 default accounts in the LDAP template, which might allow remote attackers to access the private network.

Affected configurations

NVD
Node
nortelcontivityMatch1000_vpn_switch
OR
nortelcontivityMatch2000_vpn_switch
OR
nortelcontivityMatch4000_vpn_switch
OR
nortelvpn_router_5000
OR
nortelvpn_router_portfolio

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

6.7 Medium

AI Score

Confidence

Low

0.019 Low

EPSS

Percentile

88.6%

Related for CVE-2007-2333