CVE-2002-20001High· 7.5▾ MidnightPoC availableThe Diffie-Hellman Key Agreement Protocol allows remote attackers (from the client side) to send arbitrary numbers that are actually not public keys, and trigger expensive server-side DHE modular-exponentiation calculations, aka a D(HE)a…
▾ Midnight zone — Critical, or high with PoC / in-the-wild
impact 41.3 · likelihood 4.9 · exploitation 12
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 1 source. Availability, not in-the-wild use.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
25%
2 GitHub repos (last check)
The Diffie-Hellman Key Agreement Protocol allows remote attackers (from the client side) to send arbitrary numbers that are actually not public keys, and trigger expensive server-side DHE modular-exponentiation calculations, aka a D(HE)at or D(HE)ater attack. The client needs very little CPU resources and network bandwidth. The attack may be more disruptive in cases where a client can require a server to select its largest supported key size. The basic attack scenario is that the client must claim that it can only communicate with DHE, and the server must be configured to allow DHE.
dheaterscalance_w1750d_firmwarelinux_enterprise_server = 11linux_enterprise_server = 12linux_enterprise_server = 15big-ip_access_policy_manager >= 13.1.0, < 16.1.4big-ip_access_policy_manager >= 17.0.0, < 17.1.0big-ip_advanced_firewall_manager >= 13.1.0, <= 17.1.2big-ip_advanced_firewall_manager = 17.5.0big-ip_advanced_web_application_firewall >= 13.1.0, <= 17.1.2big-ip_advanced_web_application_firewall = 17.5.0big-ip_analytics >= 13.1.0, <= 17.1.2big-ip_analytics = 17.5.0big-ip_application_acceleration_manager >= 13.1.0, <= 17.1.2big-ip_application_acceleration_manager = 17.5.0big-ip_application_security_manager >= 13.1.0, <= 17.1.2big-ip_application_security_manager = 17.5.0big-ip_application_visibility_and_reporting >= 13.1.0, <= 17.1.2big-ip_application_visibility_and_reporting = 17.5.0big-ip_carrier-grade_nat >= 13.1.0, <= 17.1.2big-ip_carrier-grade_nat = 17.5.0big-ip_ddos_hybrid_defender >= 13.1.0, <= 17.1.2big-ip_ddos_hybrid_defender = 17.5.0big-ip_domain_name_system >= 13.1.0, <= 17.1.2big-ip_domain_name_system = 17.5.0big-ip_edge_gateway >= 13.1.0, <= 17.1.2big-ip_edge_gateway = 17.5.0big-ip_fraud_protection_service >= 13.1.0, <= 17.1.2big-ip_fraud_protection_service = 17.5.0big-ip_global_traffic_manager >= 13.1.0, <= 17.1.2big-ip_global_traffic_manager = 17.5.0big-ip_link_controller >= 13.1.0, <= 17.1.2big-ip_link_controller = 17.5.0big-ip_local_traffic_manager >= 13.1.0, <= 17.1.2big-ip_local_traffic_manager = 17.5.0big-ip_policy_enforcement_manager >= 13.1.0, <= 17.1.2big-ip_policy_enforcement_manager = 17.5.0big-ip_service_proxy = 1.6.0big-ip_ssl_orchestrator >= 13.1.0, <= 17.1.2big-ip_ssl_orchestrator = 17.5.0big-ip_webaccelerator >= 13.1.0, <= 17.1.2big-ip_webaccelerator = 17.5.0big-ip_websafe >= 13.1.0, <= 17.1.2big-ip_websafe = 17.5.0big-iq_centralized_management >= 8.0.0, <= 8.4.0big-iq_centralized_management = 7.1.0traffix_signaling_delivery_controller = 5.1.0traffix_signaling_delivery_controller = 5.2.0f5os-a >= 1.3.0, <= 1.3.2f5os-a >= 1.5.0, <= 1.5.3f5os-a = 1.8.0f5os-c >= 1.3.0, <= 1.3.2f5os-c >= 1.6.0, <= 1.6.2f5os-c = 1.5.0f5os-c = 1.5.1f5os-c = 1.8.0f5os-c = 1.8.1arubaos-cx >= 10.06.0000, < 10.06.0180arubaos-cx >= 10.07.0000, < 10.07.0030arubaos-cx >= 10.08.0000, < 10.08.0010arubaos-cx >= 10.09.0000, < 10.09.0002stormshield_management_center < 3.3.3stormshield_network_security >= 2.7.0, < 4.3.16stormshield_network_security >= 4.4.0, < 4.6.3Upgrade past the affected range:
big-ip_access_policy_manager 17.1.0arubaos-cx 10.09.0002stormshield_management_center 3.3.3stormshield_network_security 4.6.3Connected by shared product, vendor, weakness, or advisory.
CVE-2020-3563High· 8.6A vulnerability in the packet processing functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device
CVE-2020-3554High· 7.5A vulnerability in the TCP packet processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) conditi…
CVE-2020-3533High· 8.6A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to restart unexpectedly.…
CVE-2020-3529High· 8.6A vulnerability in the SSL VPN negotiation process for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a reload of an affected de…
CVE-2020-3528High· 8.6A vulnerability in the OSPF Version 2 (OSPFv2) implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected devi…
CVE-2020-3306High· 7.5A vulnerability in the DHCP module of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the …