PT-2003-1850 · Check Point · Check Point Firewall-1
Published
2003-09-06
·
Updated
2008-09-05
·
CVE-2003-0757
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Check Point FireWall-1 versions 4.0 through 4.1 before SP5
Description:
The issue allows remote attackers to obtain the IP addresses of internal interfaces via certain SecuRemote requests to TCP ports 256 or 264. This occurs because the IP addresses are leaked in a reply packet.
Recommendations:
For Check Point FireWall-1 versions 4.0 through 4.1, apply Service Pack 5 to resolve the issue.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Check Point Firewall-1