First published: Wed Apr 02 2003(Updated: )
The CLI interface for WatchGuard Firebox Vclass 3.2 and earlier, and RSSA Appliance 3.0.2, does not properly close the SSH connection when a -N option is provided during authentication, which allows remote attackers to access CLI with administrator privileges.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Watchguard Firebox | =v10 | |
Watchguard Firebox | =v60 | |
Rapidstream Rapidstream | =2000 | |
Rapidstream Rapidstream | =500 | |
Rapidstream Rapidstream | =4000 | |
Rapidstream Rapidstream | =8000 | |
Watchguard Firebox | =v80 | |
Watchguard Firebox | =v100 | |
Rapidstream Rapidstream | =6000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-1520 is considered a critical vulnerability due to the potential for remote unauthorized access with administrator privileges.
To fix CVE-2002-1520, upgrade to the latest version of the affected WatchGuard Firebox or Rapidstream software.
CVE-2002-1520 affects WatchGuard Firebox versions 3.2 and earlier, and Rapidstream models such as 2000, 500, 4000, 8000, and 6000.
CVE-2002-1520 allows remote attackers to gain CLI access with administrator privileges due to improper SSH connection closure.
CVE-2002-1520 is well-documented within the cybersecurity community as a significant security risk affecting multiple devices.