Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2004-1474 | First vendor Publication | 2004-12-31 |
Vendor | Cve | Last vendor Modification | 2024-11-20 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:N/I:P/A:N) | |||
---|---|---|---|
Cvss Base Score | 5 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware before 1.63 and Gateway Security 320, 360, and 360R running firmware before 622 uses a default read/write SNMP community string, which allows remote attackers to alter the firewall's configuration file. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1474 |
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Hardware | 1 | |
Hardware | 1 | |
Hardware | 1 | |
Hardware | 1 | |
Hardware | 1 | |
Hardware | 1 | |
Hardware | 1 | |
Hardware | 1 | |
Hardware | 1 | |
Hardware | 1 | |
Hardware | 1 | |
Hardware | 1 |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
10206 | Symantec Firewall/Gateway Default SNMP String Allows Device Configuration Dis... Symantec Firewall/Gateway products contain a flaw that may allow a malicious user to read from and write to the devices configuration setting via SNMP. The issue is triggered because the Firewall/Gateway products use a standard default community string and do not allow the administrator to disable SNMP or change the community string. It is possible that the flaw may allow disclosure and modification of device settings resulting in a loss of integrity. |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2002-11-25 | Name : The community names of the remote SNMP server can be guessed. File : snmp_default_communities.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:22:39 |
|
2024-11-28 12:06:21 |
|
2021-05-04 12:02:31 |
|
2021-04-22 01:02:42 |
|
2020-05-23 00:16:01 |
|
2017-07-11 12:01:37 |
|
2016-10-18 12:01:26 |
|
2016-06-28 15:07:08 |
|
2016-04-26 12:59:19 |
|
2014-02-17 10:28:52 |
|
2013-05-11 11:45:12 |
|