Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.3, allows remote attackers to obtain potentially sensitive information without authentication by directly accessing certain HTML pages.
                
            References
                    | Link | Resource | 
|---|---|
| http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml | Vendor Advisory | 
| http://www.iss.net/security_center/static/10024.php | Vendor Advisory | 
| http://www.securityfocus.com/bid/5616 | |
| http://www.cisco.com/warp/public/707/vpn3k-multiple-vuln-pub.shtml | Vendor Advisory | 
| http://www.iss.net/security_center/static/10024.php | Vendor Advisory | 
| http://www.securityfocus.com/bid/5616 | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
History
                    No history.
Information
                Published : 2002-10-04 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2002-1099
Mitre link : CVE-2002-1099
CVE.ORG link : CVE-2002-1099
JSON object : View
Products Affected
                cisco
- vpn_3002_hardware_client
- vpn_3000_concentrator_series_software
CWE
                