CVE-2011-3309

EUVD-2011-3273
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 through 8.4 process IKE requests despite a vpnclient mode configuration, which allows remote attackers to obtain potentially sensitive information by reading IKE responder traffic, aka Bug ID CSCtt07749.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 47%
Affected Products (NVD)
VendorProductVersion
ciscoadaptive_security_appliance_software
8.2\(1\)
ciscoadaptive_security_appliance_software
8.2\(2\)
ciscoadaptive_security_appliance_software
8.2\(3\)
ciscoadaptive_security_appliance_software
8.2\(3.9\)
ciscoadaptive_security_appliance_software
8.2\(4\)
ciscoadaptive_security_appliance_software
8.2\(4.1\)
ciscoadaptive_security_appliance_software
8.2\(4.4\)
ciscoadaptive_security_appliance_software
8.2\(5\)
ciscoadaptive_security_appliance_software
8.2.1
ciscoadaptive_security_appliance_software
8.2.2
ciscoadaptive_security_appliance_software
8.2.2:interim
ciscoadaptive_security_appliance_software
8.2.3
ciscoadaptive_security_appliance_software
8.3\(1\)
ciscoadaptive_security_appliance_software
8.3\(2\)
ciscoadaptive_security_appliance_software
8.3.1
ciscoadaptive_security_appliance_software
8.3.1:interim
ciscoadaptive_security_appliance_software
8.3.2
ciscoadaptive_security_appliance_software
8.4
ciscoadaptive_security_appliance_software
8.4\(1\)
ciscoadaptive_security_appliance_software
8.4\(1.11\)
ciscoadaptive_security_appliance_software
8.4\(2\)
ciscoadaptive_security_appliance_software
8.4\(2.11\)
cisco5500_series_adaptive_security_appliance
*
𝑥
= Vulnerable software versions