Lucene search

K
cve[email protected]CVE-2002-0990
HistorySep 01, 2004 - 4:00 a.m.

CVE-2002-0990

2004-09-0104:00:00
web.nvd.nist.gov
21
symantec enterprise firewall
web proxy
remote attackers
denial of service
nvd
cve-2002-0990

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

7.2 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

55.6%

The web proxy component in Symantec Enterprise Firewall (SEF) 6.5.2 through 7.0, Raptor Firewall 6.5 and 6.5.3, VelociRaptor, and Symantec Gateway Security allow remote attackers to cause a denial of service (connection resource exhaustion) via multiple connection requests to domains whose DNS server is unresponsive or does not exist, which generates a long timeout.

Affected configurations

NVD
Node
symantecenterprise_firewallMatch6.5.2windows_2000_nt
OR
symantecenterprise_firewallMatch7.0solaris
OR
symantecenterprise_firewallMatch7.0windows_2000_nt
OR
symantecraptor_firewallMatch6.5windows_nt
OR
symantecraptor_firewallMatch6.5.3solaris
OR
symantecvelociraptorMatch500
OR
symantecvelociraptorMatch700
OR
symantecvelociraptorMatch1000
OR
symantecvelociraptorMatch1100
OR
symantecvelociraptorMatch1200
OR
symantecvelociraptorMatch1300
Node
symantecgateway_securityMatch5110
OR
symantecgateway_securityMatch5200
OR
symantecgateway_securityMatch5300

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

7.2 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

55.6%

Related for CVE-2002-0990