CVE-2019-8456

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
09/04/2019
Last modified:
17/06/2026

Description

Check Point IKEv2 IPsec VPN up to R80.30, in some less common conditions, may allow an attacker with knowledge of the internal configuration and setup to successfully connect to a site-to-site VPN server.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:checkpoint:ipsec_vpn:r80.10:*:*:*:*:*:*:*
cpe:2.3:a:checkpoint:ipsec_vpn:r80.20:*:*:*:*:*:*:*