Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-3788

EPSS 1.22% · P79
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-3788

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Race condition in Cisco Adaptive Security Appliance (ASA) 7.0(0), 7.0(2), and 7.0(4), when running with an Active/Standby configuration and when the failover LAN interface fails, allows remote attackers to cause a denial of service (standby firewall failure) by sending spoofed ARP responses from an IP address of an active firewall, which prevents the standby firewall from becoming active, aka "failover denial of service."
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Cisco Adaptive Security Applicance故障转移拒绝服务漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Cisco ASA系列自适应安全设备是思科专门设计的解决方案,能够将最高的安全性和VPN服务与全新的自适应识别和防御(AIM)架构有机地结合在一起。 CISCO ASA故障转移(failover)测试算法和方法中存在漏洞,攻击者可以向待机ARP请求发送欺骗的ARP响应,导致故障转移拒绝服务。 在Active/Standby配置中,如果故障转移LAN通讯失效的话(如线路问题、交换机失效、ASA软件bug等),待机防火墙就会向运行的防火墙IP地址的每个网段发送ARP请求以判断运行的防火墙是否存活,但没有对请求
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-3788

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-3788

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-11-24 · 18 CVEs total

CVE-2005-3797AlstraSoft Template Seller Pro payment_paypal.php PHP远程文件包含漏洞
CVE-2005-3787PHPMyAdmin多个跨站脚本漏洞
CVE-2005-3804Cisco 7920无线IP电话开放的UDP端口漏洞
CVE-2005-3803Cisco 7920无线IP电话固定SNMP共同体串漏洞
CVE-2005-3802Belkin无线路由器远程认证绕过漏洞
CVE-2005-3801Counterpane Password Safe不安全的加密漏洞
CVE-2005-3800Macromedia Contribute Publishing Server不安全共享连接密钥加密漏洞
CVE-2005-3799phpBB 大型SQL查询敏感信息泄露漏洞
CVE-2005-3798AlstraSoft Template Seller Pro index.php SQL注入漏洞
CVE-2005-3789phpwcms 多个目录遍历漏洞
CVE-2005-3796AlstraSoft Affiliate Network Pro admin_options_manage.php直接静态代码注入漏洞
CVE-2005-3795AlstraSoft Affiliate Network Pro 多个跨站脚本漏洞
CVE-2005-3794AlstraSoft Affiliate Network Pro敏感信息泄露漏洞
CVE-2005-3793AlstraSoft Affiliate Network Pro多个SQL注入漏洞
CVE-2005-3792PHPNuke Search模块SQL注入漏洞
CVE-2005-3791phpAdsNew和phpPgAds HTTP响应拆分漏洞
CVE-2005-3790PHPWCMS多个跨站脚本攻击漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2005-3788

No comments yet


Leave a comment