5
CVSSv2

CVE-2002-0852

Published: 05/09/2002 Updated: 10/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Buffer overflows in Cisco Virtual Private Network (VPN) Client 3.5.4 and previous versions allows remote malicious users to cause a denial of service via (1) an Internet Key Exchange (IKE) with a large Security Parameter Index (SPI) payload, or (2) an IKE packet with a large number of valid payloads.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco vpn client 3.5.1

cisco vpn client 3.5.2

Vendor Advisories

Multiple vulnerabilities exist in the Cisco Virtual Private Network (VPN) Client software Exploitation of these vulnerabilities prevents the Cisco VPN Client software program from functioning correctly These vulnerabilities are documented as Cisco bug ID CSCdy26045 There are no workarounds available to mitigate the effects of these vul ...