VYPR
Unrated severityNVD Advisory· Published Sep 12, 2001· Updated Apr 16, 2026

CVE-2001-1105

CVE-2001-1105

Description

RSA BSAFE SSL-J 3.0, 3.0.1 and 3.1, as used in Cisco iCND 2.0, caches session IDs from failed login attempts, which could allow remote attackers to bypass SSL client authentication and gain access to sensitive data by logging in after an initial failure.

Affected products

4
  • cpe:2.3:a:cisco:icdn:2.0:*:*:*:*:*:*:*
  • Dell/Bsafe Ssl J3 versions
    cpe:2.3:a:dell:bsafe_ssl-j:3.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:dell:bsafe_ssl-j:3.0:*:*:*:*:*:*:*
    • cpe:2.3:a:dell:bsafe_ssl-j:3.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:dell:bsafe_ssl-j:3.1:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.