CVE Vulnerabilities

CVE-2002-1107

Published: Oct 04, 2002 | Modified: Nov 20, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Cisco Virtual Private Network (VPN) Client software 2.x.x, and 3.x before 3.5.2B, does not generate sufficiently random numbers, which may make it vulnerable to certain attacks such as spoofing.

Affected Software

Name Vendor Start Version End Version
Vpn_client Cisco 2.0 (including) 2.0 (including)
Vpn_client Cisco 3.0 (including) 3.0 (including)
Vpn_client Cisco 3.0.5 (including) 3.0.5 (including)
Vpn_client Cisco 3.1 (including) 3.1 (including)
Vpn_client Cisco 3.5.1 (including) 3.5.1 (including)
Vpn_client Cisco 3.5.1c (including) 3.5.1c (including)
Vpn_client Cisco 3.5.2 (including) 3.5.2 (including)

References