20030902 IRM 007: The IP addresses of Check Point Firewall-1 internal interfaces may be enumerated using SecuRemotemailing list
http://archives.neohapsis.com/archives/bugtraq/2003-09/0018.html CVE-2003-0757
Check Point Firewall-1 4.x - SecuRemote Internal Interface Address Information Leakage
Record summary
CVE-2003-0757 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
Check Point FireWall-1 4.0 and 4.1 before SP5 allows remote attackers to obtain the IP addresses of internal interfaces via certain SecuRemote requests to TCP ports 256 or 264, which leaks the IP addresses in a reply packet.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBCheck Point Firewall-1 4.x - SecuRemote Internal Interface Address Information LeakageExploitDB exploitby Jim BecherNot analyzed1 file
References
2nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2003-0757