vendor:
VPN 3000 concentrator
by:
prdelka
7,5
CVSS
HIGH
Unauthorized Access
284
CWE
Product Name: VPN 3000 concentrator
Affected Version From: Cisco Systems Inc./VPN 3000 concentrator Version 4.1.5 RelJun 18 2004
Affected Version To: Cisco Systems Inc./VPN 3000 concentrator Version 4.1.5 RelJun 18 2004
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2004
Cisco VPN Concentrator 3000 FTP remote exploit
A vulnerability exists in the Cisco VPN Concentrator 3000, an unauthenticated user may access the file system through manipulation of FTP service commands. An unauthenticated user can use the following commands; CWD, MKD, CDUP, RNFR, SIZE, RMD. The FTP service remembers the current working directory so directory changes can affect exploitation. By removing potentially sensitive directories such as 'CERTS' it may be possible to disrupt service to a VPN.
Mitigation:
Ensure that the FTP service is properly configured and that only authorized users have access to the system.