Showing 2 vulnerabilities on this page for Spark Firewalls

Signals CISA KEV Ransomware Nuclei
checkpoint vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

User Authentication Bypass in VPN Remote Access and Mobile Access

A logic flow weakness in Remote Access and Mobile Access certificate validation in deprecated IKEv1 key exchange allows an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password.

CWE-287Jun 8, 20261 related artifact
CVSS9.3v4.0EPSS82.6%PoCs6SignalsListed in CISA KEVKnown ransomware use1 Nuclei templateSTIX

Certificate Validation Bypass in VPN Site-to-Site Connections Using IKEv1

A weakness in the certificate validation logic of the deprecated IKEv1 key exchange may allow an unauthenticated attacker positioned as a man-in-the-middle to bypass certificate validation in VPN site-to-site connections that use certificate-based authentication. Successful exploitation could allow interception or modification of traffic traversing the VPN tunnel.

CWE-295Jun 8, 2026
CVSS7.4v3.1EPSS4.55%PoCs1SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX