Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
contivity vulnerabilities and exploits
(subscribe to this query)
4
CVSSv2
CVE-2004-2621
Nortel Contivity VPN Client 2.1.7, 3.00, 3.01, 4.91, and 5.01, when opening a VPN tunnel, does not check the gateway certificate until after a dialog box has been displayed to the user, which creates a race condition that allows remote malicious users to perform a man-in-the-midd...
Nortel Contivity 4.91
Nortel Contivity 5.01
Nortel Contivity 3.00
Nortel Contivity 3.01
Nortel Contivity 2.1.7
5
CVSSv2
CVE-2005-1802
Nortel VPN Router (aka Contivity) allows remote malicious users to cause a denial of service (crash) via an IPsec IKE packet with a malformed ISAKMP header.
Nortel Contivity 4500 Secure Ip Services Gateway
Nortel Contivity 4600 Secure Ip Services Gateway
Nortel Vpn Router 1010
Nortel Vpn Router 1050
Nortel Contivity 1000 Vpn Switch
Nortel Contivity 1500 Vpn Switch
Nortel Contivity 1600 Secure Ip Services Gateway
Nortel Vpn Router 5000
Nortel Vpn Router 600
Nortel Contivity 2000 Vpn Switch
Nortel Contivity 2600 Secure Ip Services Gateway
Nortel Vpn Router 1700
Nortel Vpn Router 2700
Nortel Contivity 2500 Vpn Switch
Nortel Contivity 4000 Vpn Switch
Nortel Vpn Router 1100
Nortel Vpn Router 1740
7.5
CVSSv2
CVE-2007-2334
Nortel VPN Router (aka Contivity) 1000, 2000, 4000, and 5000 prior to 5_05.149, 5_05.3xx prior to 5_05.304, and 6.x prior to 6_05.140 has two template HTML files lacking certain verification tags, which allows remote malicious users to access the administration interface and chan...
Nortel Contivity 2000 Vpn Switch
Nortel Contivity 4000 Vpn Switch
Nortel Contivity 1000 Vpn Switch
Nortel Vpn Router 5000
10
CVSSv2
CVE-2007-2333
Nortel VPN Router (aka Contivity) 1000, 2000, 4000, and 5000 prior to 5_05.149, 5_05.3xx prior to 5_05.304, and 6.x prior to 6_05.140 includes the FIPSecryptedtest1219 and FIPSunecryptedtest1219 default accounts in the LDAP template, which might allow remote malicious users to ac...
Nortel Contivity 1000 Vpn Switch
Nortel Contivity 2000 Vpn Switch
Nortel Contivity 4000 Vpn Switch
Nortel Vpn Router 5000
Nortel Vpn Router Portfolio
4.6
CVSSv2
CVE-2005-0844
Nortel VPN client 5.01 stores the cleartext password in the memory of the Extranet.exe process, which could allow local users to obtain sensitive information.
Nortel Contivity 5.01
5
CVSSv2
CVE-2004-1105
Nortel Networks Contivity VPN Client displays a different error message depending on whether the username is valid or invalid, which could allow remote malicious users to gain sensitive information.
Nortel Contivity 4.91
5
CVSSv2
CVE-2000-0063
cgiproc CGI script in Nortel Contivity HTTP server allows remote malicious users to read arbitrary files by specifying the filename in a parameter to the script.
Nortel Contivity 1.0
5
CVSSv2
CVE-2000-0064
cgiproc CGI script in Nortel Contivity HTTP server allows remote malicious users to cause a denial of service via a malformed URL that includes shell metacharacters.
Nortel Contivity 1.0
7.2
CVSSv2
CVE-2005-2579
Nortel Contivity VPN Client V05_01.030, when configuring a certificate to be used as authentication, does not properly drop system privileges, which allows local users to gain privileges by opening a program with the File Open dialog box.
Nortel Contivity V05 01.030
9
CVSSv2
CVE-2007-2332
Nortel VPN Router (aka Contivity) 1000, 2000, 4000, and 5000 prior to 6_05.140 uses a fixed DES key to encrypt passwords, which allows remote authenticated users to obtain a password via a brute force attack on a hash from the LDAP store.
Nortel Vpn Router 1010
Nortel Vpn Router 2700
Nortel Vpn Router 5000
Nortel Vpn Router 1050
Nortel Vpn Router 1100
Nortel Vpn Router 1700
Nortel Vpn Router 1740
Nortel Vpn Router 1750
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
firmware
CVE-2006-4304
CVE-2024-32878
CVE-2024-31502
XSS
CVE-2024-3059
CVE-2024-33692
CVE-2024-3400
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started