CVE-2005-4093
Published Dec 8, 2005
Last updated a year ago
Overview
- Description
- Check Point VPN-1 SecureClient NG with Application Intelligence R56, NG FP1, 4.0, and 4.1 allows remote attackers to bypass security policies by modifying the local copy of the local.scv policy file after it has been downloaded from the VPN Endpoint.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.5
- Impact score
- 6.4
- Exploitability score
- 8
- Vector string
- AV:N/AC:L/Au:S/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-264
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:checkpoint:secureclient_ng:*:*:fp1:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9CC5C407-EEB0-482A-822B-21F77E74F937" }, { "criteria": "cpe:2.3:a:checkpoint:secureclient_ng:r56:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1D6083C1-612E-4F2F-BB38-8F88C9B336C7" }, { "criteria": "cpe:2.3:a:checkpoint:vpn-1_secureclient:4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DE2E569B-4812-48EF-9E44-45D594147258" }, { "criteria": "cpe:2.3:a:checkpoint:vpn-1_secureclient:4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "90007E81-D5F9-4961-9DB1-C64977E74208" } ], "operator": "OR" } ] } ]