Description
Secure Webserver 1.1 in Raptor 6.5 and Symantec Enterprise Firewall 6.5.2 allows remote attackers to identify IP addresses of hosts on the internal network via a CONNECT request, which generates different error messages if the host is present.
Affected products
- Symantec / enterprise_firewall6.5.2 – 6.5.2
- Symantec / raptor_firewall6.5 – 6.5
- Symantec / raptor_firewall6.5.3 – 6.5.3