Required CVE Record Information
Description
Nortel Alteon ACEdirector WebOS 9.0, with the Server Load Balancing (SLB) and Cookie-Based Persistence features enabled, allows remote attackers to determine the real IP address of a web server with a half-closed session, which causes ACEdirector to send packets from the server without changing the address to the virtual IP address.
References 4 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- iss.net: acedirector-http-reveal-ip(8010) vdb-entryx_transferred
- online.securityfocus.com: 20020312 Re: Alteon ACEdirector signature/security bug mailing-listx_transferred
- securityfocus.com: 3964 vdb-entryx_transferred
- online.securityfocus.com: 20020125 Alteon ACEdirector signature/security bug mailing-listx_transferred