« Volver al listado

CVE-2002-1463

Estado: ModificadaAlta (7.5)—

Symantec Raptor Firewall 6.5 and 6.5.3, Enterprise Firewall 6.5.2 and 7.0, VelociRaptor Models 500/700/1000 and 1100/1200/1300, and Gateway Security 5110/5200/5300 generate easily predictable initial sequence numbers (ISN), which allows remote attackers to spoof connections.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (4)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2002-1463",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 7.5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "authentication": "NONE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 6.4,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": true,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2003-06-09T04:00:00.000",
  "references": [
    {
      "url": "http://archives.neohapsis.com/archives/bugtraq/2002-07/0492.html",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.osvdb.org/855",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/5387",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.symantec.com/techsupp/bulletin/archive/firewall/082002firewall.html",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/12836",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://archives.neohapsis.com/archives/bugtraq/2002-07/0492.html",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.osvdb.org/855",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/5387",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.symantec.com/techsupp/bulletin/archive/firewall/082002firewall.html",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/12836",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Symantec Raptor Firewall 6.5 and 6.5.3, Enterprise Firewall 6.5.2 and 7.0, VelociRaptor Models 500/700/1000 and 1100/1200/1300, and Gateway Security 5110/5200/5300 generate easily predictable initial sequence numbers (ISN), which allows remote attackers to spoof connections."
    },
    {
      "lang": "es",
      "value": "Symantec Raptor Firewall 6.5 y 6.5.3, Enterprise Firewall 6.5.2 y 7.0, VelociRaptor modelos 500/700/1000 y 1100/1200/1300, y Gateway Security 5110/5200/5300 generan secuencias numéricas iniciales (ISN) fácilmente predecibles, lo que permitiría a atacantes remotos falsear conexiones."
    }
  ],
  "lastModified": "2026-06-16T21:59:22.537",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:symantec:enterprise_firewall:6.5.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "60CD39A5-0059-4E17-8F4F-58F23589A408"
            },
            {
              "criteria": "cpe:2.3:a:symantec:enterprise_firewall:7.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "55B40C3E-2794-4310-97BC-D80069992C87"
            },
            {
              "criteria": "cpe:2.3:a:symantec:raptor_firewall:6.5:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2678E925-06BD-4C3F-8223-93E070B4035E"
            },
            {
              "criteria": "cpe:2.3:a:symantec:raptor_firewall:6.5.3:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "53477F8E-F387-4266-88B7-1B1022E74F2F"
            },
            {
              "criteria": "cpe:2.3:a:symantec:velociraptor:model_500:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2BE710F1-F3AD-423B-A0DB-78D5F809D62E"
            },
            {
              "criteria": "cpe:2.3:a:symantec:velociraptor:model_700:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A4F0486F-3101-4D7B-83C2-8E9F31802504"
            },
            {
              "criteria": "cpe:2.3:a:symantec:velociraptor:model_1000:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "155FE168-A185-4D4D-923B-207F0B26EE97"
            },
            {
              "criteria": "cpe:2.3:a:symantec:velociraptor:model_1100:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "FDB06031-2EF6-4E45-977D-F28D538FB773"
            },
            {
              "criteria": "cpe:2.3:a:symantec:velociraptor:model_1200:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "30475DFE-D476-4A6C-B851-139E927BAA25"
            },
            {
              "criteria": "cpe:2.3:a:symantec:velociraptor:model_1300:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D9A2EDF6-46FF-4EF5-A37A-AAD06B9A51D1"
            }
          ],
          "operator": "OR"
        }
      ]
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:symantec:gateway_security:5110:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7E42EDB2-616D-4915-9E41-7D80F32E4901"
            },
            {
              "criteria": "cpe:2.3:h:symantec:gateway_security:5200:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "1D1175AC-9310-4804-8FB3-2F988F55BD09"
            },
            {
              "criteria": "cpe:2.3:h:symantec:gateway_security:5300:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "FF09575E-83D3-4772-816B-7D639B1C32A4"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}