CVE-2007-6095

UnknownEPSS 0.97%

Last modified

CVE-2007-6095 is a vulnerability of currently unknown severity. The SIP component in Ingate Firewall before 4.6.0 and SIParator before 4.6.0, when Remote NAT Traversal is employed, does not properly perform user registration and message distribution, which might allow remote authenticated users to receive messages intended for other users.. EPSS estimates a 0.97% chance of exploitation in the next 30 days.

Description

The SIP component in Ingate Firewall before 4.6.0 and SIParator before 4.6.0, when Remote NAT Traversal is employed, does not properly perform user registration and message distribution, which might allow remote authenticated users to receive messages intended for other users.

Metrics

EPSS Probability
0.97%

57.6th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
IngateIngate Firewall<= 4.5.2
IngateIngate Siparator<= 4.5.2

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2007-6095?
The SIP component in Ingate Firewall before 4.6.0 and SIParator before 4.6.0, when Remote NAT Traversal is employed, does not properly perform user registration and message distribution, which might allow remote authenticated users to receive messages intended for other users.
How severe is CVE-2007-6095?
Severity scoring for CVE-2007-6095 is pending analysis. The EPSS model estimates a 0.97% probability of exploitation in the next 30 days.
How do I fix CVE-2007-6095?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2007-6095?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST