← Back

Clavister

clavister

5 CVEs • 4 products

Products (4)

Click to collapse
Toggle

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Clavister
1Cos Core
Jun 17, 2026
Aug 15, 2018
N/A· v4
5.9 MEDIUM· v3
4.3 MEDIUM· v2
The IKEv1 implementation in Clavister cOS Core before 11.00.11, 11.20.xx before 11.20.06, and 12.00.xx before 12.00.09 allows remote attackers to decrypt RSA-encrypted nonces by leveraging a Bleichenbacher attack.
1Clavister
1Clavister Coreplus
Apr 23, 2026
Jul 16, 2007
N/A· v4
N/A· v3
5.4 MEDIUM· v2
The IKE implementation in Clavister CorePlus before 8.80.03, and 8.80.00, does not properly validate certificates during IKE negotiation, which allows remote attackers to cause a denial of service (gateway stop) via cert...Show more
The IKE implementation in Clavister CorePlus before 8.80.03, and 8.80.00, does not properly validate certificates during IKE negotiation, which allows remote attackers to cause a denial of service (gateway stop) via certain certificates.Show less
1Clavister
1Clavister Coreplus
Apr 23, 2026
Jul 16, 2007
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The AntiVirus engine in the HTTP-ALG in Clavister CorePlus before 8.81.00 and 8.80.03 might allow remote attackers to bypass scanning via small files.
1Clavister
1Clavister Coreplus
Apr 23, 2026
Jul 16, 2007
N/A· v4
N/A· v3
10.0 HIGH· v2
The SMTP ALG in Clavister CorePlus before 8.80.04, and 8.81.00, does not properly parse SMTP commands in certain circumstances, which allows remote attackers to bypass address blacklists.
1Clavister
2Clavister Firewall
Clavister Security Gateway
Apr 16, 2026
Nov 30, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
The Internet Key Exchange version 1 (IKEv1) implementation in Clavister Client Web allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IKE packets, as demonstrated by the...Show more
The Internet Key Exchange version 1 (IKEv1) implementation in Clavister Client Web allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.Show less