SMTP Proxy Vulnerability in Symantec Enterprise Firewall
CVE-2002-0309

Currently unrated

Key Information:

Vendor

Symantec

Vendor
CVE Published:
31 May 2002

What is CVE-2002-0309?

The SMTP proxy within the Symantec Enterprise Firewall version 6.5.x inadvertently discloses the firewall's physical interface name and address during SMTP protocol exchanges when Network Address Translation (NAT) is involved. This leakage of firewall configuration details could potentially enable remote attackers to deduce sensitive information about the firewall's infrastructure, increasing the risk of tailored attacks against the network.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2002-0309 : SMTP Proxy Vulnerability in Symantec Enterprise Firewall