PT-2005-1664 · Symantec+1 · Symantec Gateway Security+2

Published

2005-03-02

·

Updated

2008-09-05

·

CVE-2005-0618

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Symantec Firewall/VPN Appliance 200/200R firmware versions 1.5Z through 1.67 Symantec Gateway Security 360/360R and 460/460R firmware versions prior to build 858 Nexland Pro800turbo (affected versions not specified)
Description The issue concerns the SMTP binding function when configured for load balancing between two WANs. It might send SMTP traffic to a trusted network through an untrusted network.
Recommendations For Symantec Firewall/VPN Appliance 200/200R firmware versions 1.5Z through 1.67, update to version 1.68 or later. For Symantec Gateway Security 360/360R and 460/460R firmware versions prior to build 858, update to build 858 or later. For Nexland Pro800turbo, at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-0618

Affected Products

Nexland Pro800Turbo
Symantec Firewall/Vpn Appliance
Symantec Gateway Security