CVE-2007-6098

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
22/11/2007
Last modified:
09/04/2025

Description

Ingate Firewall before 4.6.0 and SIParator before 4.6.0 do not log truncated (1) ICMP, (2) UDP, and (3) TCP packets, which has unknown impact and remote attack vectors; and do not log (4) serial-console login attempts with nonexistent usernames, which might make it easier for attackers with physical access to guess valid login credentials while avoiding detection.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:ingate:ingate_firewall:*:*:*:*:*:*:*:* 4.5.2 (including)
cpe:2.3:h:ingate:ingate_siparator:*:*:*:*:*:*:*:* 4.5.2 (including)