PT-2010-5431 · Cisco · Cisco Vpn Concentrators 3000 Series+2
Published
2010-11-30
·
Updated
2010-12-03
·
CVE-2010-4354
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Cisco Adaptive Security Appliances (ASA) 5500 series devices (affected versions not specified)
Cisco PIX Security Appliances 500 series devices (affected versions not specified)
Cisco VPN Concentrators 3000 series devices (affected versions not specified)
Description
The issue concerns the remote-access IPSec VPN implementation, which responds to an Aggressive Mode IKE Phase I message only when the group name is configured on the device. This allows remote attackers to enumerate valid group names via a series of IKE negotiation attempts. The vulnerability could allow an unauthenticated, remote attacker to gain access to sensitive information.
Recommendations
For Cisco Adaptive Security Appliances (ASA) 5500 series devices, restrict access to the IKE negotiation process until a fix is available.
For Cisco PIX Security Appliances 500 series devices, consider disabling the Aggressive Mode IKE Phase I message handling until a patch is available.
For Cisco VPN Concentrators 3000 series devices, avoid using the group name configuration in the IKE negotiation process until the issue is resolved.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Asa
Cisco Pix Security Appliances 500 Series
Cisco Vpn Concentrators 3000 Series