CVE-2005-2640

Summary

CVECVE-2005-2640
StatePUBLISHED
Assignermitre
Source PriorityCVE Program / NVD first with legacy fallback
Published2005-08-23 04:00:00 UTC
Updated2025-04-03 01:03:51 UTC
DescriptionBehavioral discrepancy information leak in Juniper Netscreen VPN running ScreenOS 5.2.0 and earlier, when using IKE with pre-shared key authentication, allows remote attackers to enumerate valid usernames via an IKE Aggressive Mode packet, which generates a response if the username is valid but does not respond when the username is invalid.

Risk And Classification

Primary CVSS: v2.0 5 from [email protected]

AV:N/AC:L/Au:N/C:P/I:N/A:N

Problem Types: NVD-CWE-Other | n/a

CVSS v2.0 Breakdown

Access Vector
Network
Access Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None

AV:N/AC:L/Au:N/C:P/I:N/A:N

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Hardware Juniper Netscreen-5gt 5.0 All All All
Hardware Juniper Netscreen-idp 3.0 All All All
Hardware Juniper Netscreen-idp 3.0r1 All All All
Hardware Juniper Netscreen-idp 3.0r2 All All All
Hardware Juniper Netscreen-idp 10 3.0.1_r1 All All All
Hardware Juniper Netscreen-idp 100 3.0.1_r1 All All All
Hardware Juniper Netscreen-idp 1000 3.0.1_r1 All All All
Hardware Juniper Netscreen-idp 500 3.0.1_r1 All All All
Operating System Juniper Netscreen Screenos 1.64 All All All
Operating System Juniper Netscreen Screenos 1.66 All All All
Operating System Juniper Netscreen Screenos 1.66_r2 All All All
Operating System Juniper Netscreen Screenos 1.7 All All All
Operating System Juniper Netscreen Screenos 1.73_r1 All All All
Operating System Juniper Netscreen Screenos 1.73_r2 All All All
Operating System Juniper Netscreen Screenos 2.0.1_r8 All All All
Operating System Juniper Netscreen Screenos 2.1 All All All
Operating System Juniper Netscreen Screenos 2.10_r3 All All All
Operating System Juniper Netscreen Screenos 2.10_r4 All All All
Operating System Juniper Netscreen Screenos 2.1_r6 All All All
Operating System Juniper Netscreen Screenos 2.1_r7 All All All
Operating System Juniper Netscreen Screenos 2.5 All All All
Operating System Juniper Netscreen Screenos 2.5r1 All All All
Operating System Juniper Netscreen Screenos 2.5r2 All All All
Operating System Juniper Netscreen Screenos 2.5r6 All All All
Operating System Juniper Netscreen Screenos 2.6.0 All All All
Operating System Juniper Netscreen Screenos 2.6.1 All All All
Operating System Juniper Netscreen Screenos 2.6.1r1 All All All
Operating System Juniper Netscreen Screenos 2.6.1r10 All All All
Operating System Juniper Netscreen Screenos 2.6.1r11 All All All
Operating System Juniper Netscreen Screenos 2.6.1r12 All All All
Operating System Juniper Netscreen Screenos 2.6.1r2 All All All
Operating System Juniper Netscreen Screenos 2.6.1r3 All All All
Operating System Juniper Netscreen Screenos 2.6.1r4 All All All
Operating System Juniper Netscreen Screenos 2.6.1r5 All All All
Operating System Juniper Netscreen Screenos 2.6.1r6 All All All
Operating System Juniper Netscreen Screenos 2.6.1r7 All All All
Operating System Juniper Netscreen Screenos 2.6.1r8 All All All
Operating System Juniper Netscreen Screenos 2.6.1r9 All All All
Operating System Juniper Netscreen Screenos 2.7.1 All All All
Operating System Juniper Netscreen Screenos 2.7.1r1 All All All
Operating System Juniper Netscreen Screenos 2.7.1r2 All All All
Operating System Juniper Netscreen Screenos 2.7.1r3 All All All
Operating System Juniper Netscreen Screenos 2.8 All All All
Operating System Juniper Netscreen Screenos 2.8_r1 All All All
Operating System Juniper Netscreen Screenos 3.0.0 All All All
Operating System Juniper Netscreen Screenos 3.0.0r1 All All All
Operating System Juniper Netscreen Screenos 3.0.0r2 All All All
Operating System Juniper Netscreen Screenos 3.0.0r3 All All All
Operating System Juniper Netscreen Screenos 3.0.0r4 All All All
Operating System Juniper Netscreen Screenos 3.0.1 All All All
Operating System Juniper Netscreen Screenos 3.0.1r1 All All All
Operating System Juniper Netscreen Screenos 3.0.1r2 All All All
Operating System Juniper Netscreen Screenos 3.0.1r3 All All All
Operating System Juniper Netscreen Screenos 3.0.1r4 All All All
Operating System Juniper Netscreen Screenos 3.0.1r5 All All All
Operating System Juniper Netscreen Screenos 3.0.1r6 All All All
Operating System Juniper Netscreen Screenos 3.0.1r7 All All All
Operating System Juniper Netscreen Screenos 3.0.2 All All All
Operating System Juniper Netscreen Screenos 3.0.3 All All All
Operating System Juniper Netscreen Screenos 3.0.3r1 All All All
Operating System Juniper Netscreen Screenos 3.0.3r2 All All All
Operating System Juniper Netscreen Screenos 3.0.3r3 All All All
Operating System Juniper Netscreen Screenos 3.0.3r4 All All All
Operating System Juniper Netscreen Screenos 3.0.3r5 All All All
Operating System Juniper Netscreen Screenos 3.0.3r6 All All All
Operating System Juniper Netscreen Screenos 3.0.3r7 All All All
Operating System Juniper Netscreen Screenos 3.0.3r8 All All All
Operating System Juniper Netscreen Screenos 3.0.3_r1.1 All All All
Operating System Juniper Netscreen Screenos 3.1.0 All All All
Operating System Juniper Netscreen Screenos 3.1.0r1 All All All
Operating System Juniper Netscreen Screenos 3.1.0r10 All All All
Operating System Juniper Netscreen Screenos 3.1.0r11 All All All
Operating System Juniper Netscreen Screenos 3.1.0r12 All All All
Operating System Juniper Netscreen Screenos 3.1.0r2 All All All
Operating System Juniper Netscreen Screenos 3.1.0r3 All All All
Operating System Juniper Netscreen Screenos 3.1.0r4 All All All
Operating System Juniper Netscreen Screenos 3.1.0r5 All All All
Operating System Juniper Netscreen Screenos 3.1.0r6 All All All
Operating System Juniper Netscreen Screenos 3.1.0r7 All All All
Operating System Juniper Netscreen Screenos 3.1.0r8 All All All
Operating System Juniper Netscreen Screenos 3.1.0r9 All All All
Operating System Juniper Netscreen Screenos 3.1.1_r2 All All All
Operating System Juniper Netscreen Screenos 4.0.0 All All All
Operating System Juniper Netscreen Screenos 4.0.0 All dial All
Operating System Juniper Netscreen Screenos 4.0.0r1 All All All
Operating System Juniper Netscreen Screenos 4.0.0r10 All All All
Operating System Juniper Netscreen Screenos 4.0.0r11 All All All
Operating System Juniper Netscreen Screenos 4.0.0r12 All All All
Operating System Juniper Netscreen Screenos 4.0.0r2 All All All
Operating System Juniper Netscreen Screenos 4.0.0r3 All All All
Operating System Juniper Netscreen Screenos 4.0.0r4 All All All
Operating System Juniper Netscreen Screenos 4.0.0r5 All All All
Operating System Juniper Netscreen Screenos 4.0.0r6 All All All
Operating System Juniper Netscreen Screenos 4.0.0r7 All All All
Operating System Juniper Netscreen Screenos 4.0.0r8 All All All
Operating System Juniper Netscreen Screenos 4.0.0r9 All All All
Operating System Juniper Netscreen Screenos 4.0.1 All All All
Operating System Juniper Netscreen Screenos 4.0.1r1 All All All
Operating System Juniper Netscreen Screenos 4.0.1r10 All All All
Operating System Juniper Netscreen Screenos 4.0.1r2 All All All
Operating System Juniper Netscreen Screenos 4.0.1r3 All All All
Operating System Juniper Netscreen Screenos 4.0.1r4 All All All
Operating System Juniper Netscreen Screenos 4.0.1r5 All All All
Operating System Juniper Netscreen Screenos 4.0.1r6 All All All
Operating System Juniper Netscreen Screenos 4.0.1r7 All All All
Operating System Juniper Netscreen Screenos 4.0.1r8 All All All
Operating System Juniper Netscreen Screenos 4.0.1r9 All All All
Operating System Juniper Netscreen Screenos 4.0.2 All All All
Operating System Juniper Netscreen Screenos 4.0.3 All All All
Operating System Juniper Netscreen Screenos 4.0.3r1 All All All
Operating System Juniper Netscreen Screenos 4.0.3r2 All All All
Operating System Juniper Netscreen Screenos 4.0.3r3 All All All
Operating System Juniper Netscreen Screenos 4.0.3r4 All All All
Operating System Juniper Netscreen Screenos 5.0.0 All All All
Operating System Juniper Netscreen Screenos 5.1.0 All All All
Operating System Juniper Netscreen Screenos 5.1.0r3a All All All
Operating System Juniper Netscreen Screenos 5.2.0 All All All
Application Neoteris Instant Virtual Extranet 3.0 All All All
Application Neoteris Instant Virtual Extranet 3.1 All All All
Application Neoteris Instant Virtual Extranet 3.2 All All All
Application Neoteris Instant Virtual Extranet 3.3 All All All
Application Neoteris Instant Virtual Extranet 3.3.1 All All All
Hardware Netscreen Netscreen-sa 5000 Series All All All All
Hardware Netscreen Netscreen-sa 5020 Series 4.2_r2.2 All All All
Hardware Netscreen Netscreen-sa 5050 Series 4.2_r2.2 All All All
Operating System Netscreen Ns-10 All All All All
Operating System Netscreen Ns-100 3.0_.pe1.0 All All All
Operating System Netscreen Ns-204 0110.0_11_4.0_r10.0 All All All
Operating System Netscreen Ns-204 0110.0_11_5.1.0_r3a All All All
Operating System Netscreen Ns-204 5.0.0_r6.0 All All All
Operating System Netscreen Ns-500 4110.0_11_4.0_r10.0 All All All
Operating System Netscreen Ns-500 4110.0_11_5.1.0_r3a All All All
Operating System Netscreen Ns-50ns25 5.0.0_r6.0 All All All

Vendor Declared Affected Products

SourceVendorProductVersionPlatforms
CNA Na N/a affected n/a Not specified

References

ReferenceSourceLinkTags
Secunia - Advisories - Juniper Netscreen IPSec VPN Username Enumeration Weakness af854a3a-2127-422b-91ae-364da2661108 secunia.com Vendor Advisory
'Juniper Netscreen VPN Username Enumeration Vulnerability' - MARC af854a3a-2127-422b-91ae-364da2661108 marc.info
SecurityTracker.com Archives - Juniper NetScreen ScreenOS Lets Remote Users Determine Valid VPN Usernames af854a3a-2127-422b-91ae-364da2661108 securitytracker.com
Juniper Netscreen VPN Username Enumeration Vulnerability af854a3a-2127-422b-91ae-364da2661108 www.nta-monitor.com Exploit, Vendor Advisory
Juniper Netscreen VPN Username Enumeration Vulnerability af854a3a-2127-422b-91ae-364da2661108 www.securityfocus.com Exploit
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report