ID

VAR-200708-0121


CVE

CVE-2007-4243


TITLE

ASG of pfilter-reporter.pl Service disruption in (DoS) Vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2007-002479

DESCRIPTION

Unspecified vulnerability in pfilter-reporter.pl in Astaro Security Gateway (ASG) 7 allows remote attackers to cause a denial of service (CPU consumption) via certain network traffic, as demonstrated by P2P and iTunes applications that download large amounts of data. Security Gateway is prone to a denial-of-service vulnerability

Trust: 1.98

sources: NVD: CVE-2007-4243 // JVNDB: JVNDB-2007-002479 // BID: 85459 // VULHUB: VHN-27605

AFFECTED PRODUCTS

vendor:astaromodel:security gatewayscope:eqversion:7.006

Trust: 1.9

vendor:astaromodel:security gatewayscope:eqversion:7.005

Trust: 1.9

vendor:astaromodel:security gatewayscope:eqversion:7.004

Trust: 1.9

vendor:astaromodel:security gatewayscope:eqversion:7.003

Trust: 1.9

vendor:astaromodel:security gatewayscope:eqversion:7.002

Trust: 1.9

vendor:astaromodel:security gatewayscope:eqversion:7.001

Trust: 1.9

vendor:astaromodel:security gatewayscope:eqversion:7.0

Trust: 1.9

vendor:astaromodel:security gateway softwarescope:eqversion:7

Trust: 0.8

sources: BID: 85459 // JVNDB: JVNDB-2007-002479 // CNNVD: CNNVD-200708-136 // NVD: CVE-2007-4243

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2007-4243
value: HIGH

Trust: 1.0

NVD: CVE-2007-4243
value: HIGH

Trust: 0.8

CNNVD: CNNVD-200708-136
value: HIGH

Trust: 0.6

VULHUB: VHN-27605
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2007-4243
severity: HIGH
baseScore: 7.8
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-27605
severity: HIGH
baseScore: 7.8
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-27605 // JVNDB: JVNDB-2007-002479 // CNNVD: CNNVD-200708-136 // NVD: CVE-2007-4243

PROBLEMTYPE DATA

problemtype:NVD-CWE-Other

Trust: 1.0

sources: NVD: CVE-2007-4243

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200708-136

TYPE

unknown

Trust: 0.6

sources: CNNVD: CNNVD-200708-136

CONFIGURATIONS

sources: JVNDB: JVNDB-2007-002479

PATCH

title:Top Pageurl:http://www.astaro.com/

Trust: 0.8

sources: JVNDB: JVNDB-2007-002479

EXTERNAL IDS

db:NVDid:CVE-2007-4243

Trust: 2.8

db:SECTRACKid:1018543

Trust: 2.0

db:SREASONid:2981

Trust: 2.0

db:XFid:35823

Trust: 0.9

db:JVNDBid:JVNDB-2007-002479

Trust: 0.8

db:BUGTRAQid:20070819 ASTARO DOS AND POP3 BYPASS ISSUES PARTIALLY RESOLVED

Trust: 0.6

db:BUGTRAQid:20070805 DOS ISSUE IN ASTARO VERSION 7 PACKET FILTER REPORTING, POSSIBLE SECURITY ISSUE IN POP3 PROXY

Trust: 0.6

db:CNNVDid:CNNVD-200708-136

Trust: 0.6

db:BIDid:85459

Trust: 0.4

db:VULHUBid:VHN-27605

Trust: 0.1

sources: VULHUB: VHN-27605 // BID: 85459 // JVNDB: JVNDB-2007-002479 // CNNVD: CNNVD-200708-136 // NVD: CVE-2007-4243

REFERENCES

url:http://astaro.org/showthread.php?p=77667

Trust: 2.0

url:http://astaro.org/showthread.php?p=77694

Trust: 2.0

url:http://astaro.org/showthread.php?p=78258

Trust: 2.0

url:http://astaro.org/showthread.php?t=17782

Trust: 2.0

url:http://astaro.org/showthread.php?t=17930

Trust: 2.0

url:http://astaro.org/showthread.php?t=18280

Trust: 2.0

url:http://astaro.org/showthread.php?t=18307

Trust: 2.0

url:http://astaro.org/showthread.php?t=18551

Trust: 2.0

url:http://www.hescominsoon.com/archives/773

Trust: 2.0

url:http://www.securitytracker.com/id?1018543

Trust: 2.0

url:http://securityreason.com/securityalert/2981

Trust: 2.0

url:http://www.securityfocus.com/archive/1/475642/100/0/threaded

Trust: 1.1

url:http://www.securityfocus.com/archive/1/477120/100/0/threaded

Trust: 1.1

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/35823

Trust: 1.1

url:http://xforce.iss.net/xforce/xfdb/35823

Trust: 0.9

url:http://www.securityfocus.com/archive/1/archive/1/475642/100/0/threaded

Trust: 0.9

url:http://www.securityfocus.com/archive/1/archive/1/477120/100/0/threaded

Trust: 0.9

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2007-4243

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2007-4243

Trust: 0.8

sources: VULHUB: VHN-27605 // BID: 85459 // JVNDB: JVNDB-2007-002479 // CNNVD: CNNVD-200708-136 // NVD: CVE-2007-4243

CREDITS

Unknown

Trust: 0.3

sources: BID: 85459

SOURCES

db:VULHUBid:VHN-27605
db:BIDid:85459
db:JVNDBid:JVNDB-2007-002479
db:CNNVDid:CNNVD-200708-136
db:NVDid:CVE-2007-4243

LAST UPDATE DATE

2024-11-23T19:27:22.266000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-27605date:2018-10-15T00:00:00
db:BIDid:85459date:2007-08-08T00:00:00
db:JVNDBid:JVNDB-2007-002479date:2012-06-26T00:00:00
db:CNNVDid:CNNVD-200708-136date:2007-08-14T00:00:00
db:NVDid:CVE-2007-4243date:2024-11-21T00:35:07.837

SOURCES RELEASE DATE

db:VULHUBid:VHN-27605date:2007-08-08T00:00:00
db:BIDid:85459date:2007-08-08T00:00:00
db:JVNDBid:JVNDB-2007-002479date:2012-06-26T00:00:00
db:CNNVDid:CNNVD-200708-136date:2007-08-08T00:00:00
db:NVDid:CVE-2007-4243date:2007-08-08T22:17:00