Record summary

CVE-2005-3774 has a selected CVSS score of 5.0; EIP currently links 2 catalogued exploits.

Description

Cisco PIX 6.3 and 7.0 allows remote attackers to cause a denial of service (blocked new connections) via spoofed TCP packets that cause the PIX to create embryonic connections that that would not produce a valid connection with the end system, including (1) SYN packets with invalid checksums, which do not result in a RST; or, from an external interface, (2) one byte of "meaningless data," or (3) a TTL that is one less than needed to reach the internal destination.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBCisco PIX - Spoofed TCP SYN Packets Remote Denial of ServiceExploitDB exploitby Janis VizulisNot analyzed1 file
ExploitDB

PoC details
ExploitDBCisco PIX - TCP SYN Packet Denial of ServiceExploitDB exploitby Janis VizulisNot analyzed1 file
ExploitDB

PoC details

References

Showing 12 of 17