Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2002-1937

Опубликовано: 31 дек. 2002
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

Symantec Firewall/VPN Appliance 100 through 200R hardcodes the administrator's MAC address inside the firewall's configuration, which allows remote attackers to spoof the administrator's MAC address and perform an ARP poisoning man-in-the-middle attack to obtain the administrator's password.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:h:symantec:firewall_vpn_appliance_100:*:*:*:*:*:*:*:*
cpe:2.3:h:symantec:firewall_vpn_appliance_200:*:*:*:*:*:*:*:*
cpe:2.3:h:symantec:firewall_vpn_appliance_200r:*:*:*:*:*:*:*:*

EPSS

Процентиль: 64%
0.00473
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Symantec Firewall/VPN Appliance 100 through 200R hardcodes the administrator's MAC address inside the firewall's configuration, which allows remote attackers to spoof the administrator's MAC address and perform an ARP poisoning man-in-the-middle attack to obtain the administrator's password.

EPSS

Процентиль: 64%
0.00473
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other