RSS   Vulnerabilities for 'Vpn-1 firewall-1'   RSS

2008-03-19
 
CVE-2008-1397

CWE-264
 

 
Check Point VPN-1 Power/UTM, with NGX R60 through R65 and NG AI R55 software, allows remote authenticated users to cause a denial of service (site-to-site VPN tunnel outage), and possibly intercept network traffic, by configuring the local RFC1918 IP address to be the same as one of this tunnel's endpoint RFC1918 IP addresses, and then using SecuRemote to connect to a network interface at the other endpoint.

 
2002-12-31
 
CVE-2002-1623

 

 
The design of the Internet Key Exchange (IKE) protocol, when using Aggressive Mode for shared secret authentication, does not encrypt initiator or responder identities during negotiation, which may allow remote attackers to determine valid usernames by (1) monitoring responses before the password is supplied or (2) sniffing, as originally reported for FireWall-1 SecuRemote.

 

 >>> Vendor: Checkpoint 36 Products
Firewall-1
Provider-1
Vpn-1
Check point vpn
Next generation
Vpn-1 firewall-1
Ng-ai
Check point integrity client
Connectra ngx
Zonealarm
Zonealarm security suite
Check point
Express
Vpn-1 firewall-1 next generation
Secureclient ng
Vpn-1 secureclient
Web intelligence
Vpn-1 utm edge
Vpn-1 utm edge w embedded ngx
Check point vpn-1 pro
Vpn-1 power utm
Vpn-1 power utm with ngx
Firewall-1 pki web service
Vpn-1 firewall-1 vsx
Multi-domain management/provider-1
Endpoint connect
Endpoint security
Endpoint security vpn
Remote access clients
Zonealarm extreme security
Endpoint security mi server r73
Gaia os
Ipso os
Management server
Security gateway
Session authentication agent


Copyright 2019, cxsecurity.com

 

Back to Top