PT-2005-1664 · Symantec+1 · Symantec Gateway Security+2
Published
2005-03-02
·
Updated
2008-09-05
·
CVE-2005-0618
CVSS v2.0
6.4
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Symantec Firewall/VPN Appliance 200/200R firmware versions 1.5Z through 1.67
Symantec Gateway Security 360/360R and 460/460R firmware versions prior to build 858
Nexland Pro800turbo (affected versions not specified)
Description
The issue concerns the SMTP binding function when configured for load balancing between two WANs. It might send SMTP traffic to a trusted network through an untrusted network.
Recommendations
For Symantec Firewall/VPN Appliance 200/200R firmware versions 1.5Z through 1.67, update to version 1.68 or later.
For Symantec Gateway Security 360/360R and 460/460R firmware versions prior to build 858, update to build 858 or later.
For Nexland Pro800turbo, at the moment, there is no information about a newer version that contains a fix for this issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Nexland Pro800Turbo
Symantec Firewall/Vpn Appliance
Symantec Gateway Security