Three vulnerabilities in PIX and ASA Appliances

Three vulnerabilities in PIX and ASA Appliances

Posted 2007-05-02 22:31 by Christopher

Cisco has advised about multiple vulnerabilities affecting 7.1 and 7.2 PIX and ASA firewall appliances.

The LDAP vulnerability can result in unauthenticated remote access if a 7.2 code firewall is configured for L2TP or remote management access.

The VPN vulnerabilities can result in system DoS if a version 7.1 or 7.2 firewall is configured for VPN with password expiration or SSL VPN termination.