Page 3 of 18 results (0.004 seconds)

CVSS: 5.0EPSS: 3%CPEs: 2EXPL: 0

Ingate Firewall and SIParator before 4.5.2 allow remote attackers to bypass SIP authentication via a certain maddr parameter. Ingate Firewall y SIParator anterior a 4.5.2 permite a atacantes remotos evitar la validación SIP a través de ciertos parámetros maddr. • http://osvdb.org/36708 http://secunia.com/advisories/25420 http://www.ingate.com/relnote-452.php http://www.vupen.com/english/advisories/2007/1973 https://exchange.xforce.ibmcloud.com/vulnerabilities/34887 • CWE-287: Improper Authentication •

CVSS: 4.0EPSS: 0%CPEs: 2EXPL: 0

Unspecified vulnerability in Ingate Firewall and SIParator before 4.5.2 allows remote authenticated users without full privileges to download a Support Report. Vulnerabilidad no especificada en Ingate Firewall y SIParator anterior a 4.5.2 permite a usuarios remotos validados sin tener todos los privilegios, descargar un informe de soporte (Support Report). • http://osvdb.org/36707 http://secunia.com/advisories/25420 http://www.ingate.com/relnote-452.php http://www.vupen.com/english/advisories/2007/1973 https://exchange.xforce.ibmcloud.com/vulnerabilities/34885 •

CVSS: 7.5EPSS: 1%CPEs: 1EXPL: 0

Unspecified vulnerability in the SIP module in InGate Firewall and SIParator before 4.5.1 allows remote attackers to conduct replay attacks on the authentication mechanism via unknown vectors. Vulnerabilidad sin especificar en el módulo SIP en InGate Firewall y SIParator versiones anteriores a 4.5.1 permite a atacantes remotos conducir ataques de respuesta en el mecanismo de autenticación mediante vectores desconocidos. • http://osvdb.org/32831 http://secunia.com/advisories/23737 http://www.ingate.com/relnote-451.php http://www.securityfocus.com/bid/22080 http://www.vupen.com/english/advisories/2007/0209 https://exchange.xforce.ibmcloud.com/vulnerabilities/31546 •

CVSS: 4.0EPSS: 0%CPEs: 4EXPL: 0

Cross-site scripting (XSS) vulnerability in the web interface in Ingate Firewall before 4.4.1 and SIParator before 4.4.1 allows remote attackers to inject arbitrary web script or HTML, and steal cookies, via unspecified vectors related to "XSS exploits" in administrator functionality. • http://secunia.com/advisories/20479 http://securitytracker.com/id?1016244 http://securitytracker.com/id?1016245 http://www.ingate.com/relnote-441.php http://www.vupen.com/english/advisories/2006/2183 https://exchange.xforce.ibmcloud.com/vulnerabilities/26978 •

CVSS: 5.0EPSS: 3%CPEs: 4EXPL: 0

Ingate Firewall in the SIP module before 4.4.1 and SIParator before 4.4.1, when TLS is enabled or when SSL/TLS is enabled in the web server, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake. • http://secunia.com/advisories/20479 http://securitytracker.com/id?1016244 http://securitytracker.com/id?1016245 http://www.ingate.com/relnote-441.php http://www.securityfocus.com/bid/18318 http://www.vupen.com/english/advisories/2006/2183 https://exchange.xforce.ibmcloud.com/vulnerabilities/26977 •