5

CVE-2006-4562

The proxy DNS service in Symantec Gateway Security (SGS) allows remote attackers to make arbitrary DNS queries to third-party DNS servers, while hiding the source IP address of the attacker.  NOTE: another researcher has stated that the default configuration does not proxy DNS queries received on the external interface

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SymantecGateway Security Version1.0
SymantecGateway Security Version320
SymantecGateway Security Version360
SymantecGateway Security Version360r
SymantecGateway Security Version5000_series_2.0.1
SymantecGateway Security Version5000_series_3.0
SymantecGateway Security Version5110
SymantecGateway Security Version5110_1.0
SymantecGateway Security Version5200
SymantecGateway Security Version5200_1.0
SymantecGateway Security Version5300
SymantecGateway Security Version5300_1.0
SymantecGateway Security Version5310_1.0
SymantecGateway Security Version5400_2.0
SymantecGateway Security Version5400_2.0.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.88% 0.745
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N