← Vulnerability feed

Vulnerability record · CVE-2002-0954 · published 4 October 2002

CVE-2002-0954: Cisco pix firewall vulnerability

Cisco · Pix Firewall

The encryption algorithms for enable and passwd commands on Cisco PIX Firewall can be executed quickly due to a limited number of rounds, which make it easier for an attacker to decrypt the passwords using brute force techniques.

7.5 CVSS 2.0 High EPSS 0.70% · top 48.7%
7.5CVSS 2.0 base score
0.70%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References
16 Jun 2026Last modified by NVD

Description

The encryption algorithms for enable and passwd commands on Cisco PIX Firewall can be executed quickly due to a limited number of rounds, which make it easier for an attacker to decrypt the passwords using brute force techniques.

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2002-0954 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2003-1003Cisco pix firewall improper input validation vulnerabilityCisco PIX firewall 5.x.x, and 6.3.1 and earlier, allows remote attackers to cause a denial of service (crash and reload) via an SNMPv3 message when s…EPSS 1.4%7.5CVE-2006-0515Cisco adaptive security appliance software vulnerabilityCisco PIX/ASA 7.1.x before 7.1(2) and 7.0.x before 7.0(5), PIX 6.3.x before 6.3.5(112), and FWSM 2.3.x before 2.3(4) and 3.x before 3.1(7), when used…EPSS 9.8%7.5CVE-2005-4499Cisco vpn 3001 concentrator vulnerabilityThe Downloadable RADIUS ACLs feature in Cisco PIX and VPN 3000 concentrators, when creating an ACL on the Cisco Secure Access Control Server (CS ACS)…EPSS 2.6%7.5CVE-2004-0079Cisco firewall services module null pointer dereference vulnerabilityThe do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) vi…EPSS 9.5%7.5CVE-1999-1582Cisco pix firewall vulnerabilityBy design, the "established" command on the Cisco PIX firewall allows connections from one host to arbitrary ports of a target host if an alternative…EPSS 1.9%5.0CVE-2006-3906Cisco ios vulnerabilityInternet Key Exchange (IKE) version 1 protocol, as implemented on Cisco IOS, VPN 3000 Concentrators, and PIX firewalls, allows remote attackers to ca…EPSS 6.9%5.0CVE-2005-3669Cisco firewall services module vulnerabilityMultiple unspecified vulnerabilities in the Internet Key Exchange version 1 (IKEv1) implementation in multiple Cisco products allow remote attackers …EPSS 5.2%5.0CVE-2004-0081Cisco firewall services module vulnerabilityOpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop…EPSS 7.2%

Source: NIST National Vulnerability Database (record CVE-2002-0954), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.