First published: Thu Apr 06 2006(Updated: )
** DISPUTED ** Microsoft ISA Server 2004 allows remote attackers to bypass certain filtering rules, including ones for (1) ICMP and (2) TCP, via IPv6 packets. NOTE: An established researcher has disputed this issue, saying that "Neither ISA Server 2004 nor Windows 2003 Basic Firewall support IPv6 filtering ... This is different network protocol."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Internet Security and Acceleration Server | =2004 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2006-1651 is disputed as some claim that ISA Server 2004 does not support IPv6.
To mitigate CVE-2006-1651, ensure that appropriate filtering and firewall rules are configured, considering IPv6 support.
CVE-2006-1651 affects Microsoft ISA Server 2004.
Yes, CVE-2006-1651 allows remote attackers to potentially bypass filtering rules.
There is no specific patch for CVE-2006-1651 since it is disputed, but regular updates and correct configurations are recommended.