← Back

Checkpoint

checkpoint

131 CVEs • 95 products

Products (95)

Click to collapse
Toggle
Firewall 1
firewall-1
Vpn 1
vpn-1
Zonealarm
zonealarm
Gaia Os
gaia_os
Provider 1
provider-1
Connectra Ngx
connectra_ngx
Smartconsole
smartconsole
Mobile Access
mobile_access
Gaia Portal
gaia_portal
Zonealarm Pro
zonealarm_pro
Ng Ai
ng-ai
Check Point
check_point
Express
express
Vpn 1 Utm Edge
vpn-1_utm_edge
Ipso Os
ipso_os
Ipsec Vpn
ipsec_vpn
Capsule Docs
capsule_docs
Harmony Browse
harmony_browse
Log Server
log_server
Harmony Sase
harmony_sase
Gaia Embedded
gaia_embedded
Gaia
gaia
Quantum Spark
quantum_spark
Clusterxl
clusterxl
Quantum 6700
quantum_6700

CVEs (131)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Checkpoint
1Firewall 1
Apr 16, 2026
Nov 14, 2000
N/A· v4
N/A· v3
7.5 HIGH· v2
Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass the directionality check via fragmented TCP connection requests or reopening closed TCP connection requests, aka "One-way Connection Enforcem...Show more
Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass the directionality check via fragmented TCP connection requests or reopening closed TCP connection requests, aka "One-way Connection Enforcement Bypass."Show less
1Checkpoint
1Firewall 1
Apr 16, 2026
Oct 20, 2000
N/A· v4
N/A· v3
7.5 HIGH· v2
Checkpoint Firewall-1 with the RSH/REXEC setting enabled allows remote attackers to bypass access restrictions and connect to a RSH/REXEC client via malformed connection requests.
1Checkpoint
1Firewall 1
Apr 16, 2026
Jun 30, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Check Point FireWall-1 4.0 and 4.1 allows remote attackers to cause a denial of service by sending a stream of invalid commands (such as binary zeros) to the SMTP Security Server proxy.
1Checkpoint
1Firewall 1
Apr 16, 2026
Jun 6, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Check Point Firewall-1 allows remote attackers to cause a denial of service by sending a large number of malformed fragmented IP packets.
1Checkpoint
1Firewall 1
Apr 16, 2026
Mar 11, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Firewall-1 3.0 and 4.0 leaks packets with private IP address information, which could allow remote attackers to determine the real IP address of the host that is making the connection.
2Checkpoint
Cisco
2Firewall 1
Pix Firewall Software
Apr 16, 2026
Feb 12, 2000
N/A· v4
N/A· v3
7.5 HIGH· v2
Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send malicious packets that Firewall-1 misinterprets as a valid 227 response to a client's PASV attempt.
1Checkpoint
1Firewall 1
Apr 16, 2026
Jan 29, 2000
N/A· v4
N/A· v3
7.5 HIGH· v2
Firewall-1 does not properly filter script tags, which allows remote attackers to bypass the "Strip Script Tags" restriction by including an extra < in front of the SCRIPT tag.
1Checkpoint
1Firewall 1
Apr 16, 2026
Oct 20, 1999
N/A· v4
N/A· v3
7.5 HIGH· v2
Firewall-1 does not properly restrict access to LDAP attributes.
1Checkpoint
1Firewall 1
Apr 16, 2026
Aug 9, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Check Point FireWall-1 can be subjected to a denial of service via UDP packets that are sent through VPN-1 to port 0 of a host.
1Checkpoint
1Firewall 1
Apr 16, 2026
Jul 29, 1999
N/A· v4
N/A· v3
2.1 LOW· v2
Firewall-1 sets a long timeout for connections that begin with ACK or other packets except SYN, allowing an attacker to conduct a denial of service via a large number of connection attempts to unresponsive systems.
1Checkpoint
1Firewall 1
Apr 16, 2026
May 11, 1998
N/A· v4
N/A· v3
7.5 HIGH· v2
Check Point Firewall-1 does not properly handle certain restricted keywords (e.g., Mail, auth, time) in user-defined objects, which could produce a rule with a default "ANY" address and result in access to more systems t...Show more
Check Point Firewall-1 does not properly handle certain restricted keywords (e.g., Mail, auth, time) in user-defined objects, which could produce a rule with a default "ANY" address and result in access to more systems than intended by the administrator.Show less