27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Description: Synopsis :\n\nThe remote host is vulnerable to a Denial of Service (DoS) attack.\n\n<br />

Point-to-Point Tunneling Protocol (PPTP) allows users to tunnel to an Internet Protocol<br />

(IP) network using a Point-to-Point Protocol (PPP). The protocol is described in RFC2637.<br />

PPTP implementation using Cisco IOS software releases contains a vulnerability that will<br />

crash a router if it receives a malformed or crafted PPTP packet. To expose this<br />

vulnerability, PPTP must be enabled on the router. PPTP is disabled by default. No<br />

additional special conditions are required. An attacker may use this issue to prevent a<br />

network from working properly. This vulnerability is documented as Cisco Bug ID<br />

CSCdt46181<br />

Solution: http://www.cisco.com/warp/public/707/PPTP-vulnerability-pub.html<br />

CVE-2001-1183<br />

Cisco PPTP Authentication Bypass / DoS (Bug ID CSCdt56514)<br />

<strong>PVS</strong> ID: 2207 FAMILY: SNMP Traps RISK: HIGH NESSUS ID:11287<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a flaw which allows for the<br />

bypassing of authentication.\n\nThe remote VPN concentrator is vulnerable to<br />

an internal PPTP / IPSEC authentication login vulnerability. This vulnerability<br />

is documented as Cisco bug ID CSCdt56514.<br />

Solution: http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml<br />

CVE-2002-1095<br />

Cisco PPTP Authentication Bypass / DoS (Bug ID CSCdt56514)<br />

<strong>PVS</strong> ID: 2208 FAMILY: SNMP Traps RISK: HIGH NESSUS ID:11287<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a flaw that allows for the<br />

bypassing of authentication.\n\nThe remote VPN concentrator is vulnerable to<br />

an internal PPTP / IPSEC authentication login vulnerability. This vulnerability<br />

is documented as Cisco bug ID CSCdt56514.<br />

Solution: http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml<br />

CVE-2002-1095<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Cisco PPTP Authentication Bypass / DoS (Bug ID CSCdt56514)<br />

<strong>PVS</strong> ID: 2209 FAMILY: SNMP Traps RISK: HIGH NESSUS ID:11287<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a flaw that allows for the<br />

bypassing of authentication.\n\nThe remote VPN concentrator is vulnerable to<br />

an internal PPTP / IPSEC authentication login vulnerability. This vulnerability<br />

is documented as Cisco bug ID CSCdt56514.<br />

Solution: http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml<br />

Family Internet Services 553

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!