5
CVSSv2

CVE-2002-1937

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Symantec Firewall/VPN Appliance 100 through 200R hardcodes the administrator's MAC address inside the firewall's configuration, which allows remote malicious users to spoof the administrator's MAC address and perform an ARP poisoning man-in-the-middle attack to obtain the administrator's password.

Vulnerable Product Search on Vulmon Subscribe to Product

symantec firewall vpn appliance 100

symantec firewall vpn appliance 200

symantec firewall vpn appliance 200r