Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2001-0376

EPSS 0.43% · P63
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2001-0376

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
SonicWALL Tele2 and SOHO firewalls with 6.0.0.0 firmware using IPSEC with IKE pre-shared keys do not allow for the use of full 128 byte IKE pre-shared keys, which is the intended design of the IKE pre-shared key, and only support 48 byte keys. This allows a remote attacker to brute force attack the pre-shared keys with significantly less resources than if the full 128 byte IKE pre-shared keys were used.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
SonicWALL Tele2和SOH防火墙预共享密钥蛮力攻击漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
使用带有IKE预共享密钥的IPSEC的带6.0.0.0固件的SonicWALL Tele2和SOH防火墙不考虑到全128字节IKE预共享密钥的使用,该漏洞使IKE预共享密钥的有意设计并且只支持48字节密钥。远程攻击者可以蛮力攻击带有明显少于全128字节IKE预共享密钥被使用条件下的资源的预共享密钥。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2001-0376

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2001-0376

Please Login to view more intelligence information

Same Patch Batch · n/a · 2001-05-24 · 91 CVEs total

CVE-2001-0437DCForum 'AZ'字段远程命令执行漏洞
CVE-2001-0433Savant缓冲区溢出漏洞
CVE-2001-0431iPlanet Web Server Enterprise Edition漏洞
CVE-2001-0424FreeBSD BubbleMon特权提升漏洞
CVE-2001-0421Solaris FTP Core Dump文件泄漏用户口令散列漏洞
CVE-2001-0420Web TalkBack.cgi方式目录遍历漏洞
CVE-2001-0419Oracle Application Server ndwfn4.so远程缓冲区溢出漏洞
CVE-2001-0418NCM Content Management System content.pl输入验证漏洞
CVE-2001-0425Adcycle AdLibrary.pm会话访问漏洞
CVE-2001-0436DCForum 'AZ'字段远程命令执行漏洞
CVE-2001-0435PGP分裂关键机制漏洞
CVE-2001-0438Mac OS X漏洞
CVE-2001-0441SLRN超长头缓冲区溢出漏洞
CVE-2001-0443QVT/Net服务拒绝漏洞
CVE-2001-0446IBM WCS (WebSphere Commerce Suite)漏洞
CVE-2001-0447602Pro Lan Suite MS-Dos设备名称服务拒绝漏洞
CVE-2001-0448602Pro LAN SUITE Web配置服务器服务拒绝漏洞
CVE-2001-0450Transsoft FTP Broker目录遍历漏洞
CVE-2001-0451INDEXU权限许可和访问控制漏洞
CVE-2001-0452BRS WebWeaver FTP 根目录物理路径泄露

Showing top 20 of 91 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2001-0376

No comments yet


Leave a comment