CVE-2005-4093

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
08/12/2005
Last modified:
03/04/2025

Description

Check Point VPN-1 SecureClient NG with Application Intelligence R56, NG FP1, 4.0, and 4.1 allows remote attackers to bypass security policies by modifying the local copy of the local.scv policy file after it has been downloaded from the VPN Endpoint.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:checkpoint:secureclient_ng:*:*:fp1:*:*:*:*:*
cpe:2.3:a:checkpoint:secureclient_ng:r56:*:*:*:*:*:*:*
cpe:2.3:a:checkpoint:vpn-1_secureclient:4.0:*:*:*:*:*:*:*
cpe:2.3:a:checkpoint:vpn-1_secureclient:4.1:*:*:*:*:*:*:*