CVE-2001-1499 Information

Description

Check Point VPN-1 4.1SP4 using SecuRemote returns different error messages for valid and invalid users with prompts that vary depending on the authentication method being used which makes it easier for remote attackers to conduct brute force attacks.

Reference

http://www.osvdb.org/20210 http://www.securityfocus.com/archive/1/222366 http://www.securityfocus.com/archive/1/222479 http://www.securityfocus.com/bid/3470 https://exchange.xforce.ibmcloud.com/vulnerabilities/7343

Share on: