Description
Cisco VPN 3000 Concentrator before 4.1.7.F allows remote attackers to determine valid groupnames by sending an IKE Aggressive Mode packet with the groupname in the ID field, which generates a response if the groupname is valid, but does not generate a response for an invalid groupname.
Affected products
- Cisco / vpn_3000_concentrator
- Cisco / vpn_3000_concentrator_series_software3.6.7.d – 3.6.7.d
- Cisco / vpn_3000_concentrator_series_software4.0.1 – 4.0.1
- Cisco / vpn_3000_concentrator_series_software4.0.5.b – 4.0.5.b
- Cisco / vpn_3000_concentrator_series_software4.1 – 4.1
- Cisco / vpn_3000_concentrator_series_software4.1.5.b – 4.1.5.b
- Cisco / vpn_3000_concentrator_series_software4.1.7.a – 4.1.7.a
- Cisco / vpn_3000_concentrator_series_software4.1.7.b – 4.1.7.b
- Cisco / vpn_3000_concentrator_series_software2.0 – 2.0
- Cisco / vpn_3000_concentrator_series_software2.5.2.a – 2.5.2.a
- Cisco / vpn_3000_concentrator_series_software2.5.2.b – 2.5.2.b
- Cisco / vpn_3000_concentrator_series_software2.5.2.c – 2.5.2.c
- Cisco / vpn_3000_concentrator_series_software2.5.2.d – 2.5.2.d
- Cisco / vpn_3000_concentrator_series_software2.5.2.f – 2.5.2.f
- Cisco / vpn_3000_concentrator_series_software3.0 – 3.0
- Cisco / vpn_3000_concentrator_series_software3.0.3.a – 3.0.3.a
- Cisco / vpn_3000_concentrator_series_software3.0.3.b – 3.0.3.b
- Cisco / vpn_3000_concentrator_series_software3.0.4 – 3.0.4
- Cisco / vpn_3000_concentrator_series_software3.1(rel) – 3.1(rel)
- Cisco / vpn_3000_concentrator_series_software3.1.1 – 3.1.1
- Cisco / vpn_3000_concentrator_series_software3.1.2 – 3.1.2
- Cisco / vpn_3000_concentrator_series_software3.1.4 – 3.1.4
- Cisco / vpn_3000_concentrator_series_software3.5(rel) – 3.5(rel)
- Cisco / vpn_3000_concentrator_series_software3.5.1 – 3.5.1
- Cisco / vpn_3000_concentrator_series_software3.5.2 – 3.5.2
- Cisco / vpn_3000_concentrator_series_software3.5.3 – 3.5.3
- Cisco / vpn_3000_concentrator_series_software3.5.4 – 3.5.4
- Cisco / vpn_3000_concentrator_series_software3.5.5 – 3.5.5
- Cisco / vpn_3000_concentrator_series_software3.6.1 – 3.6.1
- Cisco / vpn_3000_concentrator_series_software3.6.3 – 3.6.3
- Cisco / vpn_3000_concentrator_series_software3.6.5 – 3.6.5
- Cisco / vpn_3000_concentrator_series_software3.6.7 – 3.6.7
- Cisco / vpn_3000_concentrator_series_software3.6.7.a – 3.6.7.a
- Cisco / vpn_3000_concentrator_series_software3.6.7.b – 3.6.7.b
- Cisco / vpn_3000_concentrator_series_software3.6.7.c – 3.6.7.c
- Cisco / vpn_3000_concentrator_series_software3.6.7.f – 3.6.7.f
- Cisco / vpn_3000_concentrator_series_software3.6.7d – 3.6.7d
- Cisco / vpn_3000_concentrator_series_software4.0 – 4.0
- Cisco / vpn_3005_concentrator_software4.0.1 – 4.0.1
- Cisco / vpn_3015_concentrator
- Cisco / vpn_3020_concentrator
- Cisco / vpn_3030_concentator
- Cisco / vpn_3060_concentrator
- Cisco / vpn_3080_concentrator