Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Shorewall 2.4.x before 2.4.1, 2.2.x before 2.2.5, and 2.0.x before 2.0.17, when MACLIST_TTL is greater than 0 or MACLIST_DISPOSITION is set to ACCEPT, allows remote attackers with an accepted MAC address to bypass other firewall rules or policies.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Shorewall MACLIST 防火墙安全规则绕过漏洞
Vulnerability Description
Shorewall是一个开源的linux系统防火墙配置工具。 Shorewall 2.4.1之前的2.4.x版本、2.2.5之前的2.2.x版本以及2.0.17之前的2.4.x版本存在安全限制绕过漏洞。 在MACLIST_TTL大于0或MACLIST_DISPOSITION设置为ACCEPT时,远程攻击者可以使用规则内MAC地址,绕过防火墙的其他规则或策略。
CVSS Information
N/A
Vulnerability Type
N/A