CVE-2015-3966

The IPsec SA establishment process on Innominate mGuard devices with firmware 8.x before 8.1.7 allows remote authenticated users to cause a denial of service (VPN service restart) by leveraging a peer relationship to send a crafted configuration with compression.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:N/I:N/A:P
icscertCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 55%
VendorProductVersion
innominatemguard_firmware
8.0.0
innominatemguard_firmware
8.0.1
innominatemguard_firmware
8.0.2
innominatemguard_firmware
8.0.3
innominatemguard_firmware
8.1.1
innominatemguard_firmware
8.1.2
innominatemguard_firmware
8.1.3
innominatemguard_firmware
8.1.4
innominatemguard_firmware
8.1.5
innominatemguard_firmware
8.1.6
𝑥
= Vulnerable software versions