| Vulnerability Name: | CVE-2006-2341 (CCN-26370) | ||||||||
| Assigned: | 2006-05-10 | ||||||||
| Published: | 2006-05-10 | ||||||||
| Updated: | 2018-10-18 | ||||||||
| Summary: | The HTTP proxy in Symantec Gateway Security 5000 Series 2.0.1 and 3.0, and Enterprise Firewall 8.0, when NAT is being used, allows remote attackers to determine internal IP addresses by using malformed HTTP requests, as demonstrated using a get request without a space separating the URI. | ||||||||
| CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
| CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||
| Vulnerability Type: | CWE-200 | ||||||||
| Vulnerability Consequences: | Obtain Information | ||||||||
| References: | Source: MITRE Type: CNA CVE-2006-2341 Source: CCN Type: SA20082 Symantec Firewall Products Internal IP Addresses Disclosure Source: SECUNIA Type: Patch, Vendor Advisory 20082 Source: CCN Type: Symantec Security Advisory SYM06-009 Symantec Enterprise Firewall NAT/HTTP Proxy internal IP leakage Source: CONFIRM Type: Patch, Vendor Advisory http://securityresponse.symantec.com/avcenter/security/Content/2006.05.10.html Source: CCN Type: SECTRACK ID: 1016057 Symantec Enterprise Firewall HTTP Proxy May Disclose Internal NAT Addresses Source: SECTRACK Type: Patch 1016057 Source: CCN Type: SECTRACK ID: 1016058 Symantec Gateway Security HTTP Proxy May Disclose Internal NAT Addresses Source: SECTRACK Type: Patch 1016058 Source: CCN Type: OSVDB ID: 25503 Symantec Firewall Products Crafted HTTP Request Internal IP Disclosure Source: BUGTRAQ Type: UNKNOWN 20060512 SEC Consult SA-20060512-0 :: Symantec Enterprise Firewall NAT/HTTP Proxy Private IP Exposure Source: BID Type: Exploit 17936 Source: CCN Type: BID-17936 Symantec Enterprise Firewall / Gateway Security HTTP Proxy Internal IP Leakage Weakness Source: VUPEN Type: Vendor Advisory ADV-2006-1764 Source: XF Type: UNKNOWN symantec-firewall-proxy-ip-disclosure(26370) Source: XF Type: UNKNOWN symantec-firewall-proxy-ip-disclosure(26370) | ||||||||
| Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
| BACK | |||||||||