Vulnerabilities > CVE-2005-3327
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Network Appliance Data ONTAP 7.0 and earlier allows iSCSI Initiators to bypass iSCSI authentication via a modified client that skips the Security (Start) mode, as required by the Login Negotiation protocol, and uses Operational mode without proving identity.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
References
- http://marc.info/?l=bugtraq&m=113028385702680&w=2
- http://marc.info/?l=bugtraq&m=113028385702680&w=2
- http://secunia.com/advisories/17321
- http://secunia.com/advisories/17321
- http://securitytracker.com/id?1015103
- http://securitytracker.com/id?1015103
- http://www.matasano.com/advisories/netapp-iSCSI.txt
- http://www.matasano.com/advisories/netapp-iSCSI.txt
- http://www.securityfocus.com/bid/15197
- http://www.securityfocus.com/bid/15197
- http://www.vupen.com/english/advisories/2005/2193
- http://www.vupen.com/english/advisories/2005/2193