Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-6147

Опубликовано: 23 дек. 2019
Источник: nvd
CVSS3: 5.9
CVSS2: 4.3
EPSS Низкий

Описание

Forcepoint NGFW Security Management Center (SMC) versions lower than 6.5.12 or 6.7.1 have a rare issue that in specific circumstances can corrupt the internal configuration database. When the database is corrupted, the SMC might produce an incorrect IPsec configuration for the Forcepoint Next Generation Firewall (NGFW), possibly resulting in settings that are weaker than expected. All SMC versions lower than 6.5.12 or 6.7.1 are vulnerable.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:forcepoint:next_generation_firewall_security_management_center:*:*:*:*:*:*:*:*
Версия до 6.5.12 (исключая)
cpe:2.3:a:forcepoint:next_generation_firewall_security_management_center:*:*:*:*:*:*:*:*
Версия от 6.6.0 (включая) до 6.7.1 (исключая)

EPSS

Процентиль: 47%
0.00241
Низкий

5.9 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-704

Связанные уязвимости

CVSS3: 5.9
github
больше 3 лет назад

Forcepoint NGFW Security Management Center (SMC) versions lower than 6.5.12 or 6.7.1 have a rare issue that in specific circumstances can corrupt the internal configuration database. When the database is corrupted, the SMC might produce an incorrect IPsec configuration for the Forcepoint Next Generation Firewall (NGFW), possibly resulting in settings that are weaker than expected. All SMC versions lower than 6.5.12 or 6.7.1 are vulnerable.

EPSS

Процентиль: 47%
0.00241
Низкий

5.9 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-704