<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Vulnerability Management Report in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/vulnerability-management-report/m-p/3012073#M145541</link>
    <description>&lt;P&gt;&lt;/P&gt;
&lt;P&gt;after scan finished for Vulnerability Management Report , i found those notes :&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;TABLE style="width: 990.9pt; margin-left: -.75pt; border-collapse: collapse;" width="1321"&gt;
&lt;TBODY&gt;
&lt;TR style="height: 12.75pt;"&gt;
&lt;TD style="width: 74.9pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="100"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;Cisco Catalyst / Cisco PIX 7.x / Cisco ASA Firewall / Juniper Networks Application Acceleration Platform DX&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P style="text-align: right;"&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;38498&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 326.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="435"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;Pre-shared Key Off-line Bruteforcing Using IKE Aggressive Mode&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P style="text-align: right;"&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;2&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P style="text-align: right;"&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;500&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;udp&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;CVE-2002-1623&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;4.3&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;yes&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR style="height: 12.75pt;"&gt;
&lt;TD style="width: 74.9pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="100"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;Cisco IOS 11-15&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P style="text-align: right;"&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;42395&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 326.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="435"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;Encrypted Management Interfaces Accessible On Cisco Device&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P style="text-align: right;"&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;2&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;5.2&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;yes&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;to be honest am not that good with Cisco , can you help me with this&amp;nbsp; &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; ?&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 09:06:38 GMT</pubDate>
    <dc:creator>oosama123</dc:creator>
    <dc:date>2019-03-12T09:06:38Z</dc:date>
    <item>
      <title>Vulnerability Management Report</title>
      <link>https://community.cisco.com/t5/network-security/vulnerability-management-report/m-p/3012073#M145541</link>
      <description>&lt;P&gt;&lt;/P&gt;
&lt;P&gt;after scan finished for Vulnerability Management Report , i found those notes :&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;TABLE style="width: 990.9pt; margin-left: -.75pt; border-collapse: collapse;" width="1321"&gt;
&lt;TBODY&gt;
&lt;TR style="height: 12.75pt;"&gt;
&lt;TD style="width: 74.9pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="100"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;Cisco Catalyst / Cisco PIX 7.x / Cisco ASA Firewall / Juniper Networks Application Acceleration Platform DX&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P style="text-align: right;"&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;38498&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 326.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="435"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;Pre-shared Key Off-line Bruteforcing Using IKE Aggressive Mode&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P style="text-align: right;"&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;2&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P style="text-align: right;"&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;500&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;udp&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;CVE-2002-1623&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;4.3&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;yes&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR style="height: 12.75pt;"&gt;
&lt;TD style="width: 74.9pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="100"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;Cisco IOS 11-15&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P style="text-align: right;"&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;42395&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 326.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="435"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;Encrypted Management Interfaces Accessible On Cisco Device&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P style="text-align: right;"&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;2&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;5.2&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD style="width: 48.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt; height: 12.75pt;" width="64"&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;yes&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;to be honest am not that good with Cisco , can you help me with this&amp;nbsp; &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; ?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 09:06:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vulnerability-management-report/m-p/3012073#M145541</guid>
      <dc:creator>oosama123</dc:creator>
      <dc:date>2019-03-12T09:06:38Z</dc:date>
    </item>
    <item>
      <title>The vulnerability listing</title>
      <link>https://community.cisco.com/t5/network-security/vulnerability-management-report/m-p/3012074#M145543</link>
      <description>&lt;P&gt;The vulnerability listing sounds like you are using an old EZVPN setup on your ASA. That's very old technology and as long as you keep using that you will have that vulnerability.&lt;/P&gt;
&lt;P&gt;You should migrate to the current SSL VPN (AnyConnect type) to mitigate those vulnerabilities.&lt;/P&gt;
&lt;P&gt;If you aren't using EZVPN, it could be a false positive as most site-site VPNs use Main Mode vs. Aggressive Mode. An external scan is not able to tell which is in use, only that the ASA is listening to certain ucp ports (udp/500 in this case) and they infer that you are potentially vulnerable as a result.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 23 Mar 2017 07:35:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vulnerability-management-report/m-p/3012074#M145543</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-03-23T07:35:54Z</dc:date>
    </item>
    <item>
      <title>thank you for this perfect</title>
      <link>https://community.cisco.com/t5/network-security/vulnerability-management-report/m-p/3012075#M145545</link>
      <description>&lt;P&gt;thank you for this perfect answer &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; ,, in fact am using ASA 5100 it's an old one&lt;/P&gt;
&lt;P&gt;and allow me this silly question : how i check if VPN is EZVPN&amp;nbsp; ?? &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;and one more thing : what about second point : &lt;SPAN style="font-size: 10.0pt; font-family: 'Arial',sans-serif; color: black;"&gt;Encrypted Management Interfaces Accessible On Cisco Device&lt;/SPAN&gt;?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;really , really thank you&lt;/P&gt;</description>
      <pubDate>Thu, 23 Mar 2017 08:46:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vulnerability-management-report/m-p/3012075#M145545</guid>
      <dc:creator>oosama123</dc:creator>
      <dc:date>2017-03-23T08:46:50Z</dc:date>
    </item>
    <item>
      <title>EZ VPN configuration will</title>
      <link>https://community.cisco.com/t5/network-security/vulnerability-management-report/m-p/3012076#M145547</link>
      <description>&lt;P&gt;EZ VPN configuration will have a line like "nem enable" under the group-policy ("show run group-policy") if the ASA is a server. If it acts as a client, it will have a configuration lines with "vpnclient" (show run vpnclient). In either of those cases, you have to use Aggresive Mode which is considered vulnerable.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If it has neither then it's just a normal IPsec headend and you can disable Aggresive Mode or AM (though it may still show as a false positive since the scan is only probing for ports and not actually negotiating a VPN and seeing that AM is disabled).&lt;/P&gt;
&lt;P&gt;the scond vulenrability is usually related to the first. However since they did not give you a specific CVSS to confirm it's a bit ambiguous.&lt;/P&gt;</description>
      <pubDate>Thu, 23 Mar 2017 09:49:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vulnerability-management-report/m-p/3012076#M145547</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-03-23T09:49:39Z</dc:date>
    </item>
  </channel>
</rss>

