CVE-2002-0428Checkpoint Check Point VPN vulnerability

3 documents3 sources
Severity
7.5HIGHNVD
EPSS
0.5%
top 36.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 12
Latest updateApr 30

Description

Check Point FireWall-1 SecuRemote/SecuClient 4.0 and 4.1 allows clients to bypass the "authentication timeout" by modifying the to_expire or expire values in the client's users.C configuration file.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

NVDcheckpoint/firewall-14.0, 4.1+1
NVDcheckpoint/check_point_vpn5 versions+4

Patches

🔴Vulnerability Details

2
GHSA
GHSA-jqf7-2vx9-v35c: Check Point FireWall-1 SecuRemote/SecuClient 42022-04-30
CVEList
CVE-2002-0428: Check Point FireWall-1 SecuRemote/SecuClient 42002-06-11
CVE-2002-0428 — Checkpoint vulnerability | cvebase