Описание
Symantec Firewall/VPN Appliance 100 through 200R hardcodes the administrator's MAC address inside the firewall's configuration, which allows remote attackers to spoof the administrator's MAC address and perform an ARP poisoning man-in-the-middle attack to obtain the administrator's password.
Ссылки
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:h:symantec:firewall_vpn_appliance_100:*:*:*:*:*:*:*:*
cpe:2.3:h:symantec:firewall_vpn_appliance_200:*:*:*:*:*:*:*:*
cpe:2.3:h:symantec:firewall_vpn_appliance_200r:*:*:*:*:*:*:*:*
EPSS
Процентиль: 64%
0.00473
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Symantec Firewall/VPN Appliance 100 through 200R hardcodes the administrator's MAC address inside the firewall's configuration, which allows remote attackers to spoof the administrator's MAC address and perform an ARP poisoning man-in-the-middle attack to obtain the administrator's password.
EPSS
Процентиль: 64%
0.00473
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other