CVE-2012-4985: Medium severity ForeScout CounterACT vulnerability
Published Dec 5, 2012
·Updated
The Forescout CounterACT NAC device 6.3.4.1 does not block ARP and ICMP traffic from unrecognized clients, which allows remote attackers to conduct ARP poisoning attacks via crafted packets.
Affected Software
1 affected component
ForeScout CounterACT=6.3.4.10
Event History
Dec 5, 2012
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-4985?
CVE-2012-4985 is considered a medium severity vulnerability due to its potential for enabling ARP poisoning attacks.
2
How do I fix CVE-2012-4985?
To fix CVE-2012-4985, upgrade the Forescout CounterACT NAC device to version 6.3.4.10 or later.
3
What type of attacks can CVE-2012-4985 facilitate?
CVE-2012-4985 can facilitate ARP poisoning attacks, allowing attackers to intercept traffic.
4
Which version of Forescout CounterACT is affected by CVE-2012-4985?
Forescout CounterACT version 6.3.4.1 is affected by CVE-2012-4985.
5
Is CVE-2012-4985 applicable to other software versions?
CVE-2012-4985 specifically affects Forescout CounterACT version 6.3.4.1 and versions prior to 6.3.4.10.