6.5
CVSSv2

CVE-2005-4093

Published: 08/12/2005 Updated: 07/11/2023
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 655
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Check Point VPN-1 SecureClient NG with Application Intelligence R56, NG FP1, 4.0, and 4.1 allows remote malicious users to bypass security policies by modifying the local copy of the local.scv policy file after it has been downloaded from the VPN Endpoint.

Vulnerable Product Search on Vulmon Subscribe to Product

checkpoint secureclient ng r56

checkpoint vpn-1 secureclient 4.1

checkpoint secureclient ng

checkpoint vpn-1 secureclient 4.0

Vendor Advisories

Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2005-4093 Olof Johansson reported a local DoS (Denial of Service) vulnerability on the PPC970 plat ...

Exploits

source: wwwsecurityfocuscom/bid/15757/info VPN-1 SecureClient is reported prone to a policy bypass vulnerability This issue is due to a failure of the application to securely implement remote administrator-provided policies on affected computers This issue allows remote VPN users to bypass the administratively-defined security policies ...