296,172
Total vulnerabilities in the database
Cisco VPN 5000 series concentrator hardware 6.0.21.0002 and earlier, and 5.2.23.0003 and earlier, when using RADIUS with a challenge type of Password Authentication Protocol (PAP) or Challenge, sends the user password in cleartext in a validation retry request, which could allow remote attackers to steal passwords via sniffing.
Software | From | Fixed in |
---|---|---|
cisco / vpn_5000_concentrator_series_software | 5.2.14 | 5.2.23.0003.x |
cisco / vpn_5000_concentrator_series_software | 6.0.15 | 6.0.21.0002.x |