PT-2001-2244 · Check Point · Check Point Firewall-1 Gui

Published

2001-09-08

·

Updated

2017-12-19

·

CVE-2001-1101

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions Check Point FireWall-1 GUI for Solaris versions 3.0b through 4.1 SP2
Description The issue concerns the Log Viewer function, which does not properly check for the existence of '.log' files when saving. This allows remote authenticated users to overwrite arbitrary files with a '.log' extension. Additionally, local users can exploit this by using a symlink attack to overwrite arbitrary files.
Recommendations For versions 3.0b through 4.1 SP2, consider restricting access to the Log Viewer function until a proper fix is applied, and avoid using the function to save files that could potentially overwrite critical system or configuration files. As a temporary workaround, consider implementing additional file system permissions or access controls to limit the ability of remote authenticated and local users to overwrite sensitive files.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2001-1101

Affected Products

Check Point Firewall-1 Gui