ID

VAR-200206-0066


CVE

CVE-2002-0603


TITLE

Snapgear Lite+ Firewall IPSEC Implement a denial of service attack vulnerability

Trust: 0.6

sources: CNNVD: CNNVD-200206-045

DESCRIPTION

Snapgear Lite+ firewall 1.5.3 allows remote attackers to cause a denial of service (IPSEC crash) via a zero length packet to UDP port 500. Snapgear Lite+ is a device with integrated firewall, routing, and VPN support. This may result in a denial of VPN/tunnel service

Trust: 1.26

sources: NVD: CVE-2002-0603 // BID: 4659 // VULHUB: VHN-4995

AFFECTED PRODUCTS

vendor:snapgearmodel:lite\+ firewallscope:eqversion:1.5.3

Trust: 1.6

vendor:snapgearmodel:lite+ firewallscope:eqversion:1.5.3

Trust: 0.3

vendor:snapgearmodel:lite+ firewallscope:neversion:1.6.0

Trust: 0.3

vendor:snapgearmodel:lite+ firewallscope:neversion:1.5.4

Trust: 0.3

sources: BID: 4659 // CNNVD: CNNVD-200206-045 // NVD: CVE-2002-0603

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2002-0603
value: MEDIUM

Trust: 1.0

CNNVD: CNNVD-200206-045
value: MEDIUM

Trust: 0.6

VULHUB: VHN-4995
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2002-0603
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.0

VULHUB: VHN-4995
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-4995 // CNNVD: CNNVD-200206-045 // NVD: CVE-2002-0603

PROBLEMTYPE DATA

problemtype:NVD-CWE-Other

Trust: 1.0

sources: NVD: CVE-2002-0603

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200206-045

TYPE

other

Trust: 0.6

sources: CNNVD: CNNVD-200206-045

EXTERNAL IDS

db:BIDid:4659

Trust: 2.0

db:NVDid:CVE-2002-0603

Trust: 2.0

db:CNNVDid:CNNVD-200206-045

Trust: 0.7

db:BUGTRAQid:20020502 KPMG-2002017: SNAPGEAR LITE+ FIREWALL DENIAL OF SERVICE

Trust: 0.6

db:XFid:8987

Trust: 0.6

db:VULNWATCHid:20020502 [VULNWATCH] KPMG-2002017: SNAPGEAR LITE+ FIREWALL DENIAL OF SERVICE

Trust: 0.6

db:VULHUBid:VHN-4995

Trust: 0.1

sources: VULHUB: VHN-4995 // BID: 4659 // CNNVD: CNNVD-200206-045 // NVD: CVE-2002-0603

REFERENCES

url:http://www.securityfocus.com/bid/4659

Trust: 1.7

url:http://www.snapgear.com/releases.html

Trust: 1.7

url:http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0050.html

Trust: 1.7

url:http://www.iss.net/security_center/static/8987.php

Trust: 1.7

url:http://marc.info/?l=bugtraq&m=102035583114759&w=2

Trust: 1.0

url:http://marc.theaimsgroup.com/?l=bugtraq&m=102035583114759&w=2

Trust: 0.6

url:http://www.snapgear.com/liteplus.html

Trust: 0.3

url:http://marc.info/?l=bugtraq&m=102035583114759&w=2

Trust: 0.1

sources: VULHUB: VHN-4995 // BID: 4659 // CNNVD: CNNVD-200206-045 // NVD: CVE-2002-0603

CREDITS

Peter Gründl※ pgrundl@kpmg.dk

Trust: 0.6

sources: CNNVD: CNNVD-200206-045

SOURCES

db:VULHUBid:VHN-4995
db:BIDid:4659
db:CNNVDid:CNNVD-200206-045
db:NVDid:CVE-2002-0603

LAST UPDATE DATE

2025-04-03T22:26:25.824000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-4995date:2016-10-18T00:00:00
db:BIDid:4659date:2009-07-11T12:46:00
db:CNNVDid:CNNVD-200206-045date:2005-10-20T00:00:00
db:NVDid:CVE-2002-0603date:2025-04-03T01:03:51.193

SOURCES RELEASE DATE

db:VULHUBid:VHN-4995date:2002-06-18T00:00:00
db:BIDid:4659date:2002-05-02T00:00:00
db:CNNVDid:CNNVD-200206-045date:2002-05-02T00:00:00
db:NVDid:CVE-2002-0603date:2002-06-18T04:00:00