📦

firewall-1

Vendor: checkpoint

Actively Exploited 0 CISA KEV List
PoC / Exploits 8 Code Available
Total RCEs 2 Remote Access
Total CVEs 94 Total Indexed
Avg. EPSS 3.30% Exploit Prob.
Latest CVE CVE-2006-3885 Jul 27

Security Vulnerability Index

Page 4 / 10
5.0 CVSS

Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to redirect FTP connections to other servers ("FTP Bounce") via invalid FTP commands that are processed improperly by FireWall-1, aka "FTP Connection Enforcement Bypass."

EPSS: 1.70%
5.0 CVSS

Buffer overflow in Getkey in the protocol checker in the inter-module communication mechanism in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to cause a denial of service.

EPSS: 1.86%
7.5 CVSS

The seed generation mechanism in the inter-module S/Key authentication mechanism in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass authentication via a brute force attack, aka "One-time (s/key) Password Authentication."

EPSS: 1.78%
7.5 CVSS

Checkpoint Firewall-1 with the RSH/REXEC setting enabled allows remote attackers to bypass access restrictions and connect to a RSH/REXEC client via malformed connection requests.

EPSS: 1.63%
5.0 CVSS
CVE-2000-0582
Exploit Found

Check Point FireWall-1 4.0 and 4.1 allows remote attackers to cause a denial of service by sending a stream of invalid commands (such as binary zeros) to the SMTP Security Server proxy.

EPSS: 7.56%
5.0 CVSS
CVE-2000-0482
Exploit Found

Check Point Firewall-1 allows remote attackers to cause a denial of service by sending a large number of malformed fragmented IP packets.

EPSS: 6.44%
5.0 CVSS

Firewall-1 3.0 and 4.0 leaks packets with private IP address information, which could allow remote attackers to determine the real IP address of the host that is making the connection.

EPSS: 1.56%
7.5 CVSS

Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send malicious packets that Firewall-1 misinterprets as a valid 227 response to a client's PASV attempt.

EPSS: 2.20%
7.5 CVSS
CVE-2000-0116
Exploit Found

Firewall-1 does not properly filter script tags, which allows remote attackers to bypass the "Strip Script Tags" restriction by including an extra < in front of the SCRIPT tag.

EPSS: 2.48%
7.5 CVSS

Firewall-1 does not properly restrict access to LDAP attributes.

EPSS: 1.32%