PT-2007-5025 · Esoft · Esoft Instagate Ex2 Utm
Published
2007-07-15
·
Updated
2018-10-15
·
CVE-2007-3787
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
eSoft InstaGate EX2 UTM device (affected versions not specified)
Description
The issue allows remote attackers to gain privileges through various means, including CSRF attacks or by making a password change from an unattended workstation, because the device does not require the old password when changing the admin password.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Esoft Instagate Ex2 Utm