Vulnerabilities > Nortel > Contivity > 5.01

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0844 Cryptographic Issues vulnerability in Nortel Contivity 5.01
Nortel VPN client 5.01 stores the cleartext password in the memory of the Extranet.exe process, which could allow local users to obtain sensitive information.
local
low complexity
nortel CWE-310
4.6
2004-12-31 CVE-2004-2621 Unspecified vulnerability in Nortel Contivity
Nortel Contivity VPN Client 2.1.7, 3.00, 3.01, 4.91, and 5.01, when opening a VPN tunnel, does not check the gateway certificate until after a dialog box has been displayed to the user, which creates a race condition that allows remote attackers to perform a man-in-the-middle (MITM) attack.
network
high complexity
nortel
4.0