Internet Gatekeeper

Vendor:

First CVE: Aug 18, 2004 · Active for 21 years

47
Total CVEs
More Total CVEs than 97% of tracked products
4.7
Avg CVEs / Year
Higher CVE frequency than 87% of tracked products
6.9
Avg CVSS
Higher Avg CVSS than 40% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Internet Gatekeeper over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 18, 2004
21 years ago
Most Recent CVE
Oct 12, 2022
1,381 days ago

CVE Severity & Scoring

Internet Gatekeeper47 CVEs
All CVEs352,231 CVEs
MediumHigh
Attack Vector
Local4 (8.5%)
Network17 (36.2%)
Unknown26 (55.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low21 (44.7%)
High0 (0.0%)
Unknown26 (55.3%)
User Interaction
None13 (27.7%)
Unknown26 (55.3%)
Required8 (17.0%)
Privileges Required
Low1 (2.1%)
High0 (0.0%)
None20 (42.6%)
Unknown26 (55.3%)

Top CVEs

Signals from CVEs in this product scope (47 CVEs).

47 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as Barracuda Spam Firewall, allow remote attackers or local user
Aug 18, 200410.029NONO
suid.cgi scripts in F-Secure (1) Internet Gatekeeper for Linux before 2.15.484 and (2) Anti-Virus Linux Gateway before 2.16 are installed SUID with world-executable permissions, wh
Nov 16, 20057.227NOYES
A vulnerability was discovered in the web user interface of F-Secure Internet Gatekeeper. An authenticated user can modify settings through the web user interface in a way that cou
Sep 28, 20218.826NONO
Multiple F-Secure anti-virus products for Microsoft Windows and Linux before 20070522 allow remote attackers to cause a denial of service (file scanning infinite loop) via certain
May 31, 200710.026NONO
Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows Servers 5.50 and earlier, MIMEsweeper 5.50 and earlier, Anti-
Dec 31, 20045.026NOYES
Multiple Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aerdl.dll unpacker handler function crashes. This can lead to a possible
Oct 12, 20227.525NONO
A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.dll may go into an infinite loop when unpacking PE files. It is possible that t
Sep 6, 20227.525NONO
Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use multiple MIME fields with the same name, w
Oct 20, 20047.525NONO
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aegen.dll will go into an infinite loop when unpacking PE files. This eventuall
Aug 23, 20227.524NONO
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aepack.dll component can crash the scanning en
Jul 22, 20227.524NONO

Exploit Exposure

Signals from CVEs in this product scope (47 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
4.3% of CVEs· 88th percentile

Social Chatter

Signals from CVEs in this product scope (47 CVEs).

Media Mentions

Signals from CVEs in this product scope (47 CVEs).

Top CNAs Publishing CVEs For Internet Gatekeeper

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
6.5017.65.7%00
6.4246.34.1%00
6.4156.05.4%01
6.4117.03.7%01
6.32137.04.0%01
6.31127.24.1%01
6.3107.03.5%01
3.02.122115.02.4%00
2.626.38.2%01
2.1619.33.7%00
2.15.48419.33.7%00
2.1437.34.2%00
2.0647.34.0%00