MEDIUM · 5.0

CVE-2002-1535

Secure Webserver 1.1 in Raptor 6.5 and Symantec Enterprise Firewall 6.5.2 allows remote attackers to identify IP addresses of hosts on the internal network via a CONNECT request, which generates diffe...

Vulnerability Description

Secure Webserver 1.1 in Raptor 6.5 and Symantec Enterprise Firewall 6.5.2 allows remote attackers to identify IP addresses of hosts on the internal network via a CONNECT request, which generates different error messages if the host is present.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
SymantecEnterprise Firewall6.5.2
SymantecRaptor Firewall6.5

References

FAQ

What is CVE-2002-1535?

CVE-2002-1535 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Secure Webserver 1.1 in Raptor 6.5 and Symantec Enterprise Firewall 6.5.2 allows remote attackers to identify IP addresses of hosts on the internal network via a CONNECT request, which generates diffe...

How severe is CVE-2002-1535?

CVE-2002-1535 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2002-1535?

Check the references section above for vendor advisories and patch information. Affected products include: Symantec Enterprise Firewall, Symantec Raptor Firewall.