PT-2001-2584 · Check Point · Check Point Vpn-1

Publicado

2001-12-31

·

Atualizado

2017-07-11

·

CVE-2001-1499

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Check Point VPN-1 version 4.1SP4
Description The issue allows remote attackers to more easily conduct brute force attacks due to the different error messages returned for valid and invalid users. This variation in error messages depends on the authentication method being used.
Recommendations For Check Point VPN-1 version 4.1SP4, consider implementing additional authentication measures or rate limiting to mitigate the risk of brute force attacks.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2001-1499

Produtos afetados

Check Point Vpn-1