MEDIUM · 6.4

CVE-2005-0618

The SMTP binding function in Symantec Firewall/VPN Appliance 200/200R firmware after 1.5Z and before 1.68, Gateway Security 360/360R and 460/460R firmware before vuild 858, and Nexland Pro800turbo, wh...

Vulnerability Description

The SMTP binding function in Symantec Firewall/VPN Appliance 200/200R firmware after 1.5Z and before 1.68, Gateway Security 360/360R and 460/460R firmware before vuild 858, and Nexland Pro800turbo, when configured for load balancing between two WANs, might send SMTP traffic to a trusted network through an untrusted network.

CVSS Score

6.4

MEDIUM

AV:N/AC:L/Au:N/C:P/I:P/A:N
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
NexlandPro800TurboAll versions
SymantecFirewall Vpn Appliance 200RAll versions
SymantecGateway Security 360<= 857
SymantecGateway Security 460<= 857

References

FAQ

What is CVE-2005-0618?

CVE-2005-0618 is a vulnerability with a CVSS score of 6.4 (MEDIUM). The SMTP binding function in Symantec Firewall/VPN Appliance 200/200R firmware after 1.5Z and before 1.68, Gateway Security 360/360R and 460/460R firmware before vuild 858, and Nexland Pro800turbo, wh...

How severe is CVE-2005-0618?

CVE-2005-0618 has been rated MEDIUM with a CVSS base score of 6.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2005-0618?

Check the references section above for vendor advisories and patch information. Affected products include: Nexland Pro800Turbo, Symantec Firewall Vpn Appliance 200R, Symantec Gateway Security 360, Symantec Gateway Security 460.