Secure Webserver 1.1 in Raptor 6.5 and Symantec Enterprise Firewall 6.5.2 allows remote attackers to identify IP addresses of hosts on the internal network via a CONNECT request, which generates different error messages if the host is present.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Enterprise_firewall | Symantec | 6.5.2 (including) | 6.5.2 (including) |
Raptor_firewall | Symantec | 6.5 (including) | 6.5 (including) |
Raptor_firewall | Symantec | 6.5.3 (including) | 6.5.3 (including) |