8.6
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 4.0
Source: NVD
Description
Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Software Blades. A Security fix that mitigates this vulnerability is available.
Affected (12)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version r80.40 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version r81 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version r80.40 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version r80.40 |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version r81.20 |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version r81.10 |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Version r81 |
| Running on/with | Platform Versions |
|---|---|
Checkpoint Quantum Security Gateway | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Version r81.10 |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Version r80.20 |
| Running on/with | Platform Versions |
|---|---|
Checkpoint Quantum Spark | All versions |
References (4)
Source: cve@checkpoint.com
MitigationPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationPatchVendor Advisory
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
US Government Resource
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
Third Party Advisory
Timeline
No history available yet.