CVE-2000-0150Checkpoint Firewall-1 vulnerability

3 documents3 sources
Severity
7.5HIGHNVD
EPSS
0.5%
top 35.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 12
Latest updateApr 30

Description

Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send malicious packets that Firewall-1 misinterprets as a valid 227 response to a client's PASV attempt.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

NVDcheckpoint/firewall-13.0, 4.0+1
NVDcisco/pix_firewall_software7 versions+6

🔴Vulnerability Details

2
GHSA
GHSA-pjp8-g7wh-3846: Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send malicious packets that Firewa2022-04-30
CVEList
CVE-2000-0150: Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send malicious packets that Firewa2000-03-22
CVE-2000-0150 — Checkpoint Firewall-1 vulnerability | cvebase