← Vulnerability feed

Vulnerability record · CVE-2005-0817 · published 2 May 2005

CVE-2005-0817: Symantec enterprise firewall vulnerability

Symantec · Enterprise Firewall

Unknown vulnerability in the DNSd proxy, as used in Symantec Gateway Security 5400 2.x and 5300 1.x, Enterprise Firewall 7.0.x and 8.x, and VelociRaptor 1100/1200/1300 1.5, allows remote attackers to poison the DNS cache and redirect users to malicious sites.

5.0 CVSS 2.0 Medium EPSS 1.6% · top 25.0%
5.0CVSS 2.0 base score
1.6%EPSS exploitation probability, 30 days
NoNot in CISA KEV
4Affected product versions listed by NVD
14References
16 Jun 2026Last modified by NVD

Description

Unknown vulnerability in the DNSd proxy, as used in Symantec Gateway Security 5400 2.x and 5300 1.x, Enterprise Firewall 7.0.x and 8.x, and VelociRaptor 1100/1200/1300 1.5, allows remote attackers to poison the DNS cache and redirect users to malicious sites.

AV:N/AC:L/Au:N/C:N/I:P/A:N

Affected products

4 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2005-0817 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.3CVE-2007-0447Symantec antivirus scan engine memory buffer overflow vulnerabilityHeap-based buffer overflow in the Decomposer component in multiple Symantec products allows remote attackers to execute arbitrary code via multiple c…EPSS 6.0%9.3CVE-2007-3699Symantec antivirus scan engine vulnerabilityThe Decomposer component in multiple Symantec products allows remote attackers to cause a denial of service (infinite loop) via a certain value in th…EPSS 3.9%9.3CVE-2007-4422Symantec enterprise firewall vulnerabilityThe login interface in Symantec Enterprise Firewall 6.x, when a VPN with pre-shared key (PSK) authentication is enabled, generates different response…EPSS 2.6%9.3CVE-2004-1029Hp java sdk-rte permissions and access controls vulnerabilityThe Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does not properly restrict acce…EPSS 17%7.8CVE-2002-2317Symantec velociraptor information exposure vulnerabilityMemory leak in the (1) httpd, (2) nntpd, and (3) vpn driver in VelociRaptor 1.0 allows remote attackers to cause a denial of service (memory consumpt…EPSS 1.7%7.5CVE-2005-3768Symantec enterprise firewall vulnerabilityBuffer overflow in the Internet Key Exchange version 1 (IKEv1) implementation in Symantec Dynamic VPN Services, as used in Enterprise Firewall, Gatew…EPSS 3.8%7.5CVE-2004-0369Entrust libkmp isakmp library vulnerabilityBuffer overflow in Entrust LibKmp ISAKMP library, as used by Symantec Enterprise Firewall 7.0 through 8.0, Gateway Security 5300 1.0, Gateway Securit…EPSS 4.4%7.5CVE-2002-1463Symantec enterprise firewall vulnerabilitySymantec Raptor Firewall 6.5 and 6.5.3, Enterprise Firewall 6.5.2 and 7.0, VelociRaptor Models 500/700/1000 and 1100/1200/1300, and Gateway Security …EPSS 6.9%

Source: NIST National Vulnerability Database (record CVE-2005-0817), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.