The proxy DNS service in Symantec Gateway Security (SGS) allows remote attackers to make arbitrary DNS queries to third-party DNS servers, while hiding the source IP address of the attacker. NOTE: another researcher has stated that the default configuration does not proxy DNS queries received on the external interface
Conclusion & alert: CVE-2006-4562 is rated Moderate Risk (44.3/100): CVSS Medium severity, with medium exploitation likelihood (EPSS 1.40%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 1.16% | 1.40% | +0.24% |
| 2 | 2026-01-17 | 0.88% | 1.16% | +0.28% |
| 3 | 2025-09-30 | — | 0.88% | — |
Full EPSS history (13 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 5.0 | 2.0 | MEDIUM |
|
10.0 | 2.9 | [email protected] |
| vendor | priority | summary | link |
|---|---|---|---|
alpine
|
— | CVE-2006-4562: no source package rows; 0 state rows across 0 repos (none); fixed 0, open 0. | https://security.alpinelinux.org/vuln/CVE-2006-4562 |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| symantec | gateway_security | 1.0 | cpe:2.3:h:symantec:gateway_security:1.0:*:*:*:*:*:*:* |
| symantec | gateway_security | 320 | cpe:2.3:h:symantec:gateway_security:320:*:*:*:*:*:*:* |
| symantec | gateway_security | 360 | cpe:2.3:h:symantec:gateway_security:360:*:*:*:*:*:*:* |
| symantec | gateway_security | 360r | cpe:2.3:h:symantec:gateway_security:360r:*:*:*:*:*:*:* |
| symantec | gateway_security | 5000_series_2.0.1 | cpe:2.3:h:symantec:gateway_security:5000_series_2.0.1:*:*:*:*:*:*:* |
| symantec | gateway_security | 5000_series_3.0 | cpe:2.3:h:symantec:gateway_security:5000_series_3.0:*:*:*:*:*:*:* |
| symantec | gateway_security | 5110 | cpe:2.3:h:symantec:gateway_security:5110:*:*:*:*:*:*:* |
| symantec | gateway_security | 5110_1.0 | cpe:2.3:h:symantec:gateway_security:5110_1.0:*:*:*:*:*:*:* |
| symantec | gateway_security | 5200 | cpe:2.3:h:symantec:gateway_security:5200:*:*:*:*:*:*:* |
| symantec | gateway_security | 5200_1.0 | cpe:2.3:h:symantec:gateway_security:5200_1.0:*:*:*:*:*:*:* |
| symantec | gateway_security | 5300 | cpe:2.3:h:symantec:gateway_security:5300:*:*:*:*:*:*:* |
| symantec | gateway_security | 5300_1.0 | cpe:2.3:h:symantec:gateway_security:5300_1.0:*:*:*:*:*:*:* |
| symantec | gateway_security | 5310_1.0 | cpe:2.3:h:symantec:gateway_security:5310_1.0:*:*:*:*:*:*:* |
| symantec | gateway_security | 5400_2.0 | cpe:2.3:h:symantec:gateway_security:5400_2.0:*:*:*:*:*:*:* |
| symantec | gateway_security | 5400_2.0.1 | cpe:2.3:h:symantec:gateway_security:5400_2.0.1:*:*:*:*:*:*:* |