Multiple Symantec HTTP Proxy Information Disclosure Vulnerability
BID:5959
Info
Multiple Symantec HTTP Proxy Information Disclosure Vulnerability
| Bugtraq ID: | 5959 |
| Class: | Design Error |
| CVE: |
CVE-2002-1535 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 14 2002 12:00AM |
| Updated: | Jul 11 2009 06:06PM |
| Credit: | Discovered by AI-SEC Security. |
| Vulnerable: |
Symantec Raptor Firewall 6.5.3 Solaris Symantec Raptor Firewall 6.5 Windows NT Symantec Enterprise Firewall 6.5.2 NT/2000 |
| Not Vulnerable: | |
Discussion
Multiple Symantec HTTP Proxy Information Disclosure Vulnerability
The "Simple, Secure Webserver" is a HTTP proxy included with Raptor Firewall, Symantec Enterprise Firewall, VelociRaptor and Symantec Gateway Security. An information disclosure vulnerability has been reported in this component. According to the report, it is possible for external hosts to identify responsive hosts on the network connected to the internal interface. Responsive and unresponsive hosts can be distinguished based on the response to a CONNECT request for a guessed internal IP address.
The "Simple, Secure Webserver" is a HTTP proxy included with Raptor Firewall, Symantec Enterprise Firewall, VelociRaptor and Symantec Gateway Security. An information disclosure vulnerability has been reported in this component. According to the report, it is possible for external hosts to identify responsive hosts on the network connected to the internal interface. Responsive and unresponsive hosts can be distinguished based on the response to a CONNECT request for a guessed internal IP address.
Exploit / POC
Multiple Symantec HTTP Proxy Information Disclosure Vulnerability
There is no exploit code required.
There is no exploit code required.
Solution / Fix
Multiple Symantec HTTP Proxy Information Disclosure Vulnerability
Solution:
This vulnerability has been included in a patch. Administrators are advised to upgrade to the most recent patch level as soon as possible. Visit http://www.symantec.com/techsupp for patch download locations.
Solution:
This vulnerability has been included in a patch. Administrators are advised to upgrade to the most recent patch level as soon as possible. Visit http://www.symantec.com/techsupp for patch download locations.
References
Multiple Symantec HTTP Proxy Information Disclosure Vulnerability
References:
References: