← Back

CVE-2002-1937

nvd nist
Published: Dec 31, 2002Modified: Apr 16, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:P/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Symantec Firewall/VPN Appliance 100 through 200R hardcodes the administrator's MAC address inside the firewall's configuration, which allows remote attackers to spoof the administrator's MAC address and perform an ARP poisoning man-in-the-middle attack to obtain the administrator's password.

Affected (3)

3 products
Firewall Vpn Appliance 100
Firewall Vpn Appliance 200
Firewall Vpn Appliance 200r
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions
All versions

Timeline

No history available yet.