ID

VAR-200604-0332


CVE

CVE-2006-1966


TITLE

Unspecified Fortinet Service disruption in products (DoS) Vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2006-003764

DESCRIPTION

An unspecified Fortinet product, possibly Fortinet28, allows remote attackers to cause a denial of service via a "small synflood" to the SMTP port (TCP port 25), as demonstrated by a 10-microsecond wait between sending packets. NOTE: this issue has been disputed in followup posts that suggest that a protection feature is triggering a RST. Unspecified Fortinet Product has a service disruption (DoS) There are vulnerabilities that are put into a state.Service disruption by a third party (DoS) There is a possibility of being put into a state. Fortinet28 is prone to a denial-of-service vulnerability

Trust: 1.98

sources: NVD: CVE-2006-1966 // JVNDB: JVNDB-2006-003764 // BID: 87659 // VULHUB: VHN-18074

AFFECTED PRODUCTS

vendor:fortinetmodel:fortinet28scope: - version: -

Trust: 1.4

vendor:fortinetmodel:fortinet28scope:eqversion:*

Trust: 1.0

vendor:fortinetmodel:fortinet28scope:eqversion:0

Trust: 0.3

sources: BID: 87659 // JVNDB: JVNDB-2006-003764 // CNNVD: CNNVD-200604-426 // NVD: CVE-2006-1966

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2006-1966
value: MEDIUM

Trust: 1.0

NVD: CVE-2006-1966
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-200604-426
value: MEDIUM

Trust: 0.6

VULHUB: VHN-18074
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2006-1966
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-18074
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-18074 // JVNDB: JVNDB-2006-003764 // CNNVD: CNNVD-200604-426 // NVD: CVE-2006-1966

PROBLEMTYPE DATA

problemtype:NVD-CWE-Other

Trust: 1.0

sources: NVD: CVE-2006-1966

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200604-426

TYPE

unknown

Trust: 0.6

sources: CNNVD: CNNVD-200604-426

CONFIGURATIONS

sources: JVNDB: JVNDB-2006-003764

EXTERNAL IDS

db:NVDid:CVE-2006-1966

Trust: 2.8

db:JVNDBid:JVNDB-2006-003764

Trust: 0.8

db:CNNVDid:CNNVD-200604-426

Trust: 0.7

db:FULLDISCid:20060418 RE: FORTINET28 BOX DOES NOT RESIST HAS SMALL SYNFLOOD!

Trust: 0.6

db:BUGTRAQid:20060416 FORTINET28 BOX DOES NOT RESIST HAS SMALL SYNFLOOD!

Trust: 0.6

db:BIDid:87659

Trust: 0.4

db:VULHUBid:VHN-18074

Trust: 0.1

sources: VULHUB: VHN-18074 // BID: 87659 // JVNDB: JVNDB-2006-003764 // CNNVD: CNNVD-200604-426 // NVD: CVE-2006-1966

REFERENCES

url:http://archives.neohapsis.com/archives/fulldisclosure/2006-04/0449.html

Trust: 2.0

url:http://archives.neohapsis.com/archives/fulldisclosure/2006-04/0472.html

Trust: 2.0

url:http://www.securityfocus.com/archive/1/431404/100/0/threaded

Trust: 1.1

url:http://www.securityfocus.com/archive/1/archive/1/431404/100/0/threaded

Trust: 0.9

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2006-1966

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2006-1966

Trust: 0.8

sources: VULHUB: VHN-18074 // BID: 87659 // JVNDB: JVNDB-2006-003764 // CNNVD: CNNVD-200604-426 // NVD: CVE-2006-1966

CREDITS

Unknown

Trust: 0.3

sources: BID: 87659

SOURCES

db:VULHUBid:VHN-18074
db:BIDid:87659
db:JVNDBid:JVNDB-2006-003764
db:CNNVDid:CNNVD-200604-426
db:NVDid:CVE-2006-1966

LAST UPDATE DATE

2024-08-14T13:39:45.868000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-18074date:2018-10-18T00:00:00
db:BIDid:87659date:2006-04-21T00:00:00
db:JVNDBid:JVNDB-2006-003764date:2013-12-26T00:00:00
db:CNNVDid:CNNVD-200604-426date:2006-04-25T00:00:00
db:NVDid:CVE-2006-1966date:2018-10-18T16:37:26.707

SOURCES RELEASE DATE

db:VULHUBid:VHN-18074date:2006-04-21T00:00:00
db:BIDid:87659date:2006-04-21T00:00:00
db:JVNDBid:JVNDB-2006-003764date:2013-12-26T00:00:00
db:CNNVDid:CNNVD-200604-426date:2006-04-21T00:00:00
db:NVDid:CVE-2006-1966date:2006-04-21T10:02:00