5
CVSSv2

CVE-2000-1027

Published: 11/12/2000 Updated: 30/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Cisco Secure PIX Firewall 5.2(2) allows remote malicious users to determine the real IP address of a target FTP server by flooding the server with PASV requests, which includes the real IP address in the response when passive mode is established.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco pix firewall software 5.2

Exploits

source: wwwsecurityfocuscom/bid/1877/info The Cisco PIX is a popular firewall network device It is possible to configure the PIX so that it hides the IP address of internal ftp servers from clients connecting to it By sending a number of requests to enter passive ftp mode (PASV) during an ftp session, the IP address will eventually be ...