CVE-2004-2679

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2004
Last modified:
03/04/2025

Description

Check Point Firewall-1 4.1 up to NG AI R55 allows remote attackers to obtain potentially sensitive information by sending an Internet Key Exchange (IKE) with a certain Vendor ID payload that causes Firewall-1 to return a response containing version and other information.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.0:sp1:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.0:sp2:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.0:sp3:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.0:sp4:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.0:sp5:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.0:sp6:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.0:sp7:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.0:sp8:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.1:sp1:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.1:sp2:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.1:sp3:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.1:sp4:*:*:*:*:*:*
cpe:2.3:a:checkpoint:firewall-1:4.1:sp5:*:*:*:*:*:*