Lucene search

K
cve[email protected]CVE-2004-1754
HistoryMar 09, 2005 - 5:00 a.m.

CVE-2004-1754

2005-03-0905:00:00
web.nvd.nist.gov
23
symantec
gateway security
dns
proxy
dns cache
security
vulnerability
nvd
cve-2004-1754

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

6.7 Medium

AI Score

Confidence

High

0.297 Low

EPSS

Percentile

96.9%

The DNS proxy (DNSd) for multiple Symantec Gateway Security products allows remote attackers to poison the DNS cache via a malicious DNS server query response that contains authoritative or additional records.

Affected configurations

NVD
Node
symantecenterprise_firewallMatch7.0.4solaris
OR
symantecenterprise_firewallMatch7.0.4windows_2000_nt
OR
symantecenterprise_firewallMatch8.0
OR
symantecenterprise_firewallMatch8.0solaris
OR
symantecenterprise_firewallMatch8.0windows_2000_nt
Node
symantecgateway_securityMatch5110_1.0
OR
symantecgateway_securityMatch5200_1.0
OR
symantecgateway_securityMatch5300_1.0
OR
symantecgateway_securityMatch5310_1.0
OR
symantecgateway_securityMatch5400_2.0
OR
symantecgateway_securityMatch5400_2.0.1

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

6.7 Medium

AI Score

Confidence

High

0.297 Low

EPSS

Percentile

96.9%

Related for CVE-2004-1754