PT-2001-2584 · Check Point · Check Point Vpn-1
Publicado
2001-12-31
·
Atualizado
2017-07-11
·
CVE-2001-1499
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Check Point VPN-1 version 4.1SP4
Description
The issue allows remote attackers to more easily conduct brute force attacks due to the different error messages returned for valid and invalid users. This variation in error messages depends on the authentication method being used.
Recommendations
For Check Point VPN-1 version 4.1SP4, consider implementing additional authentication measures or rate limiting to mitigate the risk of brute force attacks.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Check Point Vpn-1