CVE-2006-2341

N/A Unknown
Published: May 12, 2006 Modified: April 16, 2026
View on NVD

Description

The HTTP proxy in Symantec Gateway Security 5000 Series 2.0.1 and 3.0, and Enterprise Firewall 8.0, when NAT is being used, allows remote attackers to determine internal IP addresses by using malformed HTTP requests, as demonstrated using a get request without a space separating the URI.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/20082
Source: cve@mitre.org
Patch Vendor Advisory
http://securitytracker.com/id?1016057
Source: cve@mitre.org
Patch
http://securitytracker.com/id?1016058
Source: cve@mitre.org
Patch
http://www.securityfocus.com/bid/17936
Source: cve@mitre.org
Exploit
http://www.vupen.com/english/advisories/2006/1764
Source: cve@mitre.org
Vendor Advisory
http://secunia.com/advisories/20082
Source: af854a3a-2127-422b-91ae-364da2661108
Patch Vendor Advisory
http://securityresponse.symantec.com/avcenter/security/Content/2006.05.10.html
Source: af854a3a-2127-422b-91ae-364da2661108
Patch Vendor Advisory
http://securitytracker.com/id?1016057
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://securitytracker.com/id?1016058
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://www.securityfocus.com/archive/1/433876/30/5040/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/17936
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://www.vupen.com/english/advisories/2006/1764
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/26370
Source: af854a3a-2127-422b-91ae-364da2661108

16 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
10.1%
93th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

symantec