Lucene search

K
cveCiscoCVE-2008-3815
HistoryOct 23, 2008 - 10:00 p.m.

CVE-2008-3815

2008-10-2322:00:01
CWE-287
cisco
web.nvd.nist.gov
33
cisco
asa
pix
vulnerability
vpn
authentication
remote attackers
nvd
cve-2008-3815

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

6.7

Confidence

Low

EPSS

0.005

Percentile

77.5%

Unspecified vulnerability in Cisco Adaptive Security Appliances (ASA) 5500 Series and PIX Security Appliances 7.0 before 7.0(8)3, 7.1 before 7.1(2)78, 7.2 before 7.2(4)16, 8.0 before 8.0(4)6, and 8.1 before 8.1(1)13, when configured as a VPN using Microsoft Windows NT Domain authentication, allows remote attackers to bypass VPN authentication via unknown vectors.

Affected configurations

Nvd
Node
ciscoasa_5500
OR
ciscopixMatch7.0
OR
ciscopixMatch7.1
OR
ciscopixMatch7.2
OR
ciscopixMatch8.0
OR
ciscopixMatch8.1
VendorProductVersionCPE
ciscoasa_5500*cpe:2.3:h:cisco:asa_5500:*:*:*:*:*:*:*:*
ciscopix7.0cpe:2.3:h:cisco:pix:7.0:*:*:*:*:*:*:*
ciscopix7.1cpe:2.3:h:cisco:pix:7.1:*:*:*:*:*:*:*
ciscopix7.2cpe:2.3:h:cisco:pix:7.2:*:*:*:*:*:*:*
ciscopix8.0cpe:2.3:h:cisco:pix:8.0:*:*:*:*:*:*:*
ciscopix8.1cpe:2.3:h:cisco:pix:8.1:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

6.7

Confidence

Low

EPSS

0.005

Percentile

77.5%