PT-2000-1305 · Check Point · Zonealarm
Published
2000-04-24
·
Updated
2008-09-10
·
CVE-2000-0339
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
ZoneAlarm versions 2.1.10 and earlier
Description
The issue allows remote attackers to bypass firewall rules by not filtering UDP packets with a source port of 67.
Recommendations
For ZoneAlarm versions 2.1.10 and earlier, update to a version that filters UDP packets with a source port of 67 to prevent bypassing of firewall rules.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Zonealarm