CVE Database
/

CVE-2009-0077

Back to search

CVE-2009-0077

Published: Apr 15, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

The firewall engine in Microsoft Forefront Threat Management Gateway, Medium Business Edition (TMG MBE); and Internet Security and Acceleration (ISA) Server 2004 SP3, 2006, 2006 Supportability Update, and 2006 SP1; does not properly manage the session state of web listeners, which allows remote attackers to cause a denial of service (many stale sessions) via crafted packets, aka "Web Proxy TCP State Limited Denial of Service Vulnerability."

VendorProductVersions

n/a

n/a

affected
n/a

References

1022045
vdb-entry
x_refsource_SECTRACK
MS09-016
vendor-advisory
x_refsource_MS
53636
vdb-entry
x_refsource_OSVDB
TA09-104A
third-party-advisory
x_refsource_CERT
ADV-2009-1030
vdb-entry
x_refsource_VUPEN
34687
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:6068
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now