Check Point Endpoint Security MI Server through R73 3.0.0 HFA2.5 does not configure X.509 certificate validation for client devices, which allows man-in-the-middle malicious users to spoof SSL servers by presenting an arbitrary certificate during a session established by a client.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
checkpoint endpoint security mi server r73 |