CVE-2012-4985

high

Description

The Forescout CounterACT NAC device 6.3.4.1 does not block ARP and ICMP traffic from unrecognized clients, which allows remote attackers to conduct ARP poisoning attacks via crafted packets.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/80284

http://www.securityfocus.com/bid/56689

http://www.reactionpenetrationtesting.co.uk/forescout-nac-icmp-arp.html

http://osvdb.org/87895

Details

Source: Mitre, NVD

Published: 2012-12-05

Updated: 2025-04-11

Risk Information

CVSS v2

Base Score: 4.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:N/A:N

Severity: Medium

CVSS v3

Base Score: 7.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Severity: High