VYPR

Firebox

by WatchGuard

CVEs (26)

  • CVE-2008-1618Apr 7, 2008
    risk 0.00cvss epss 0.02

    The PPTP VPN service in Watchguard Firebox before 10, when performing the MS-CHAPv2 authentication handshake, generates different error codes depending on whether the username is valid or invalid, which allows remote attackers to enumerate valid usernames.

  • CVE-2002-1519Apr 2, 2003
    risk 0.00cvss epss 0.04

    Format string vulnerability in the CLI interface for WatchGuard Firebox Vclass 3.2 and earlier, and RSSA Appliance 3.0.2, allows remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in the password parameter.

  • CVE-2002-1520Apr 2, 2003
    risk 0.00cvss epss 0.03

    The CLI interface for WatchGuard Firebox Vclass 3.2 and earlier, and RSSA Appliance 3.0.2, does not properly close the SSH connection when a -N option is provided during authentication, which allows remote attackers to access CLI with administrator privileges.

  • CVE-2002-1046Oct 4, 2002
    risk 0.00cvss epss 0.02

    Dynamic VPN Configuration Protocol service (DVCP) in Watchguard Firebox firmware 5.x.x allows remote attackers to cause a denial of service (crash) via a malformed packet containing tab characters to TCP port 4110.

  • CVE-2001-0692Sep 20, 2001
    risk 0.00cvss epss 0.02

    SMTP proxy in WatchGuard Firebox (2500 and 4500) 4.5 and 4.6 allows a remote attacker to bypass firewall filtering via a base64 MIME encoded email attachment whose boundary name ends in two dashes.

  • CVE-2000-0783Oct 20, 2000
    risk 0.00cvss epss 0.02

    Watchguard Firebox II allows remote attackers to cause a denial of service by sending a malformed URL to the authentication service on port 4100.

Page 2 of 2