MEDIUM · 5.0

CVE-2004-1474

Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware before 1.63 and Gateway Security 320, 360, and 360R running firmware before 622 uses a default read/write SNMP community...

Vulnerability Description

Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware before 1.63 and Gateway Security 320, 360, and 360R running firmware before 622 uses a default read/write SNMP community string, which allows remote attackers to alter the firewall's configuration file.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:N/I:P/A:N
Confidentiality
NONE
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
SymantecFirewall Vpn Appliance 100All versions
SymantecFirewall Vpn Appliance 200All versions
SymantecFirewall Vpn Appliance 200RAll versions
SymantecGateway Security 320All versions
SymantecGateway Security 360All versions
SymantecGateway Security 360RAll versions
SymantecNexland Isb Soho Firewall ApplianceAll versions
SymantecNexland Pro100 Firewall ApplianceAll versions
SymantecNexland Pro400 Firewall ApplianceAll versions
SymantecNexland Pro800 Firewall ApplianceAll versions
SymantecNexland Pro800Turbo Firewall ApplianceAll versions
SymantecNexland Wavebase Firewall ApplianceAll versions

References

FAQ

What is CVE-2004-1474?

CVE-2004-1474 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware before 1.63 and Gateway Security 320, 360, and 360R running firmware before 622 uses a default read/write SNMP community...

How severe is CVE-2004-1474?

CVE-2004-1474 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2004-1474?

Check the references section above for vendor advisories and patch information. Affected products include: Symantec Firewall Vpn Appliance 100, Symantec Firewall Vpn Appliance 200, Symantec Firewall Vpn Appliance 200R, Symantec Gateway Security 320, Symantec Gateway Security 360.