Cisco VPN 3000 Concentrator Multiple Vulnerabilities (CSCdt56514, CSCdv66718)

This script is (C) 2003-2014 Tenable Network Security, Inc.

Synopsis :

The remote device is missing a vendor-supplied security patch.

Description :

The remote VPN concentrator is vulnerable to an internal PPTP / IPSEC
authentication login attack.

This vulnerability is documented as Cisco bug ID CSCdt56514.

Solution :

Risk factor :

High / CVSS Base Score : 7.5
CVSS Temporal Score : 6.5
Public Exploit Available : true

Family: CISCO

Nessus Plugin ID: 11287 (CSCdt56514.nasl)

Bugtraq ID: 5613

CVE ID: CVE-2002-1092