Description
Behavioral discrepancy information leak in Juniper Netscreen VPN running ScreenOS 5.2.0 and earlier, when using IKE with pre-shared key authentication, allows remote attackers to enumerate valid usernames via an IKE Aggressive Mode packet, which generates a response if the username is valid but does not respond when the username is invalid.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2005-2641 | Behavioral discrepancy information leak in Juniper Netscreen VPN running ScreenOS 5.2.0 and earlier, when using IKE with pre-shared key authentication, allows remote attackers to enumerate valid usernames via an IKE Aggressive Mode packet, which generates a response if the username is valid but does not respond when the username is invalid. |
References
History
No history.
Subscriptions
Juniper
Subscribe
Netscreen-5gt
Subscribe
Netscreen-idp
Subscribe
Netscreen-idp 10
Subscribe
Netscreen-idp 100
Subscribe
Netscreen-idp 1000
Subscribe
Netscreen-idp 500
Subscribe
Netscreen Screenos
Subscribe
Neoteris
Subscribe
Instant Virtual Extranet
Subscribe
Netscreen
Subscribe
Netscreen-sa 5000 Series
Subscribe
Netscreen-sa 5020 Series
Subscribe
Netscreen-sa 5050 Series
Subscribe
Ns-10
Subscribe
Ns-100
Subscribe
Ns-204
Subscribe
Ns-500
Subscribe
Ns-50ns25
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T22:45:01.317Z
Reserved: 2005-08-20T00:00:00.000Z
Link: CVE-2005-2640
No data.
Status : Deferred
Published: 2005-08-23T04:00:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2005-2640
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD