PT-2006-5355 · Symantec · Symantec Gateway Security

Published

2006-09-06

·

Updated

2024-08-07

·

CVE-2006-4562

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Symantec Gateway Security (SGS) (affected versions not specified)
Description The issue allows remote attackers to make arbitrary DNS queries to third-party DNS servers while hiding the source IP address of the attacker. It is related to the proxy DNS service in Symantec Gateway Security. Note that the default configuration may not proxy DNS queries received on the external interface.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2006-4562

Affected Products

Symantec Gateway Security