VDB
CVE-2005-3666
CVE-2005-3666
PUBLISHED
CVSS 10 CRITICAL
Multiple unspecified format string vulnerabilities in multiple unspecified implementations of Internet Key Exchange version 1 (IKEv1) have multiple unspecified attack vectors and impacts, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of information in the original sources, it is likely that this candidate will be REJECTed once it is known which implementations are actually vulnerable.
EPSS 0.75% · 73.6th percentile
Risk Scores
CVSS 2.0
10
EPSS Score
0.75%
73.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| internet_key_exchange | internet_key_exchange | 1 |
| n/a | n/a | n/a |
Exploit Intelligence
Timeline
- Nov 17, 2005 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 25, 2023 EPSS Score
References
- http://www.niscc.gov.uk/niscc/docs/br-20051114-01013.html?lang=en url
- http://jvn.jp/niscc/NISCC-273756/index.html url
- http://www.ee.oulu.fi/research/ouspg/protos/testing/c09/isakmp/ url
- VU#226364 third-party-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2005-3666 advisory
- http://www.ee.oulu.fi/research/ouspg/protos/testing/c09/isakmp url