27 July, 2011 - Vendor releases update (CMS 6.4.1 update-3)
28 July, 2011 - Vulnerability publicly disclosed.
IV. CREDIT
Discovered by Tom Neaves (Verizon Business)
4 August, 2010 - Vendor releases maintenance patch (Cisco Bug ID = CSCtf14288).
4 August, 2010 - Vulnerability publicly disclosed.
IV. CREDIT
Discovered by Tom Neaves (Verizon Business)
All other versions of SNX, EPS and EPC are vulnerable.
Credits
--------
Check Point thanks Thierry Zoller and Nagib Guettiche of Verizon Business (www.verizonbusiness.com) for bringing this issue to our attention in a forthright and professional manner.
Sent: Monday, July 27, 2009 2:35 PM
To: McDonnell, Michael
Cc: Choon Ming; bugtraq@securityfocus.com; full-disclosure-bounces@lists.grok.org.uk
Subject: Re: computer crime statistics
Try the Verizon Business Data Breach investigations report. I think it
has some statistics you are looking for.
http://www.verizonbusiness.com/products/security/risk/databreach/
Scotty
The Cisco PSIRT is not aware of any public announcements or malicious
use of the vulnerability described in this advisory.
The crafted TCP packet DoS vulnerability was discovered and reported
to Cisco by Gregory W. MacPherson and Robert J. Combo from Verizon
Business.
The ACL bypass vulnerability was reported to Cisco by Jon Ramsey and
Jeff Jarmoc from SecureWorks.
The Cisco PSIRT greatly appreciates the opportunity to work with
Try the Verizon Business Data Breach investigations report. I think it
has some statistics you are looking for.
http://www.verizonbusiness.com/products/security/risk/databreach/
Scotty
McDonnell, Michael wrote:
> You probably will have more look searching databases provided by your local
> library. If your local University has a data librarian they might be able to
To: McDonnell, Michael
Cc: Choon Ming; bugtraq@securityfocus.com;
full-disclosure-bounces@lists.grok.org.uk
Subject: Re: computer crime statistics
Try the Verizon Business Data Breach investigations report. I think it
has some statistics you are looking for.
http://www.verizonbusiness.com/products/security/risk/databreach/
Scotty