CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1822  CVE-2000-0244  Candidate  The Citrix ICA (Independent Computing Architecture) protocol uses weak encryption (XOR) for user authentication.  Proposed (20000412)  ACCEPT(2) Levy, Magdych | MODIFY(1) Frech | NOOP(2) Baker, Cole  Frech> XF:citrix-encryption  View
5490  CVE-2002-1103  Candidate  Cisco VPN 3000 Concentrator 2.2.x, 3.6(Rel), and 3.x before 3.5.5, allows remote attackers to cause a denial of service via (1) malformed or (2) large ISAKMP packets.  Proposed (20030317)  ACCEPT(3) Baker, Cole, Wall | MODIFY(1) Frech | NOOP(1) Cox  Frech> XF:cisco-vpn-isakmp-dos(10028)  View
3590  CVE-2001-0783  Candidate  Cisco TFTP server 1.1 allows remote attackers to read arbitrary files via a ..(dot dot) attack in the GET command.  Modified (20050706)  ACCEPT(1) Foat | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Oliver, Wall  Frech> XF:cisco-tftp-directory-traversal(6722)  View
5342  CVE-2002-0954  Candidate  The encryption algorithms for enable and passwd commands on Cisco PIX Firewall can be executed quickly due to a limited number of rounds, which make it easier for an attacker to decrypt the passwords using brute force techniques.  Proposed (20020830)  ACCEPT(2) Baker, Green | MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall  Frech> XF:cisco-pix-weak-encryption(10368)  View
823  CVE-1999-0843  Candidate  Denial of service in Cisco routers running NAT via a PORT command from an FTP client to a Telnet port.  Proposed (19991208)  ACCEPT(3) Balinsky, Cole, Stracener | MODIFY(1) Frech | NOOP(2) Armstrong, Baker | REVIEWING(3) Christey, Prosser, Ziese  Frech> XF:cisco-nat-dos | Christey> Mike Prosser"s REVIEWING vote expires July 17, 2000 | Ziese> After reviewing | http://www.cisco.com/warp/public/707/iostelnetopt-pub.shtml | I can not confirm this exists unless it"s restructred to | describe a problem against IOS per se; not NAT per se. I am | reviewing this and it may take some time. | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Christey> Not sure if Kevin"s suggested reference really describes this | one. However, a followup email by Jim Duncan of Cisco does | acknowledge the problem as discussed in the Bugtraq post: | http://marc.theaimsgroup.com/?l=vuln-dev&m=94385601831585&w=2 | The original post is: | http://marc.theaimsgroup.com/?l=bugtraq&m=94184947504814&w=2 | | It could be that the researcher believed that the problem was | NAT, but in fact it wasn"t. | | I need to follow up with Ziese/Balinsky on this one.  View

Page 192 of 20943, showing 5 records out of 104715 total, starting on record 956, ending on 960

Actions