Rapid7 Vulnerability & Exploit Database

ISAKMP Allows Weak IPsec Encryption Settings

Back to Search

ISAKMP Allows Weak IPsec Encryption Settings

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:N)
Published
07/01/2008
Created
07/25/2018
Added
07/01/2008
Modified
12/04/2013

Description

The ISAKMP endpoint allows short key lengths or insecure encryption algorithms to be negotiated. This could allow remote attackers to compromise the confidentiality and integrity of the data by decrypting and modifying individual ESP or AH packets.

Solution(s)

  • fix-ipsec-weak-encryption-settings

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;