← Vulnerability feed

Vulnerability record · CVE-2005-3768 · published 23 November 2005

CVE-2005-3768: Symantec enterprise firewall vulnerability

Symantec · Enterprise Firewall

Buffer overflow in the Internet Key Exchange version 1 (IKEv1) implementation in Symantec Dynamic VPN Services, as used in Enterprise Firewall, Gateway Security, and Firewall /VPN Appliance products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.

7.5 CVSS 2.0 High EPSS 3.8% · top 10.4%
7.5CVSS 2.0 base score
3.8%EPSS exploitation probability, 30 days
NoNot in CISA KEV
10Affected product versions listed by NVD
12References
16 Jun 2026Last modified by NVD

Description

Buffer overflow in the Internet Key Exchange version 1 (IKEv1) implementation in Symantec Dynamic VPN Services, as used in Enterprise Firewall, Gateway Security, and Firewall /VPN Appliance products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

10 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2005-3768 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.3CVE-2007-4422Symantec enterprise firewall vulnerabilityThe login interface in Symantec Enterprise Firewall 6.x, when a VPN with pre-shared key (PSK) authentication is enabled, generates different response…EPSS 2.6%9.3CVE-2004-1029Hp java sdk-rte permissions and access controls vulnerabilityThe Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does not properly restrict acce…EPSS 17%7.5CVE-2004-0369Entrust libkmp isakmp library vulnerabilityBuffer overflow in Entrust LibKmp ISAKMP library, as used by Symantec Enterprise Firewall 7.0 through 8.0, Gateway Security 5300 1.0, Gateway Securit…EPSS 4.4%7.5CVE-2004-0190Symantec firewall vpn appliance 100 vulnerabilitySymantec FireWall/VPN Appliance model 200 records a cleartext password for the password administration page, which may be cached on the administrator…EPSS 1.4%7.5CVE-2002-1463Symantec enterprise firewall vulnerabilitySymantec Raptor Firewall 6.5 and 6.5.3, Enterprise Firewall 6.5.2 and 7.0, VelociRaptor Models 500/700/1000 and 1100/1200/1300, and Gateway Security …EPSS 6.9%7.5CVE-2003-0106Symantec enterprise firewall vulnerabilityThe HTTP proxy for Symantec Enterprise Firewall (SEF) 7.0 allows proxy users to bypass pattern matching for blocked URLs via requests that are URL-en…EPSS 1.4%7.5CVE-2002-0538Symantec enterprise firewall vulnerabilityFTP proxy in Symantec Raptor Firewall 6.5.3 and Enterprise 7.0 rewrites an FTP server's "FTP PORT" responses in a way that allows remote attackers to…EPSS 1.7%5.0CVE-2006-2341Symantec enterprise firewall information exposure vulnerabilityThe HTTP proxy in Symantec Gateway Security 5000 Series 2.0.1 and 3.0, and Enterprise Firewall 8.0, when NAT is being used, allows remote attackers t…EPSS 3.8%

Source: NIST National Vulnerability Database (record CVE-2005-3768), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.