MEDIUM · 5.4

CVE-2007-3805

The IKE implementation in Clavister CorePlus before 8.80.03, and 8.80.00, does not properly validate certificates during IKE negotiation, which allows remote attackers to cause a denial of service (ga...

Vulnerability Description

The IKE implementation in Clavister CorePlus before 8.80.03, and 8.80.00, does not properly validate certificates during IKE negotiation, which allows remote attackers to cause a denial of service (gateway stop) via certain certificates.

CVSS Score

5.4

MEDIUM

AV:N/AC:H/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
ClavisterClavister Coreplus<= 8.80.03

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-3805?

CVE-2007-3805 is a vulnerability with a CVSS score of 5.4 (MEDIUM). The IKE implementation in Clavister CorePlus before 8.80.03, and 8.80.00, does not properly validate certificates during IKE negotiation, which allows remote attackers to cause a denial of service (ga...

How severe is CVE-2007-3805?

CVE-2007-3805 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-3805?

Check the references section above for vendor advisories and patch information. Affected products include: Clavister Clavister Coreplus.