Vulnerability Description
The SIP component in Ingate Firewall before 4.6.0 and SIParator before 4.6.0, when Remote NAT Traversal is employed, does not properly perform user registration and message distribution, which might allow remote authenticated users to receive messages intended for other users.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ingate | Ingate Firewall | <= 4.5.2 |
| Ingate | Ingate Siparator | <= 4.5.2 |
Related Weaknesses (CWE)
References
- http://osvdb.org/42172
- http://secunia.com/advisories/27688Vendor Advisory
- http://www.ingate.com/relnote-460.php
- http://www.securityfocus.com/bid/26486
- http://osvdb.org/42172
- http://secunia.com/advisories/27688Vendor Advisory
- http://www.ingate.com/relnote-460.php
- http://www.securityfocus.com/bid/26486
FAQ
What is CVE-2007-6095?
CVE-2007-6095 is a vulnerability with a CVSS score of 4.0 (MEDIUM). The SIP component in Ingate Firewall before 4.6.0 and SIParator before 4.6.0, when Remote NAT Traversal is employed, does not properly perform user registration and message distribution, which might a...
How severe is CVE-2007-6095?
CVE-2007-6095 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-6095?
Check the references section above for vendor advisories and patch information. Affected products include: Ingate Ingate Firewall, Ingate Ingate Siparator.