Vulnerability Name:

CVE-2000-0181 (CCN-4207)

Assigned:2000-03-11
Published:2000-03-11
Updated:2008-09-10
Summary:Firewall-1 3.0 and 4.0 leaks packets with private IP address information, which could allow remote attackers to determine the real IP address of the host that is making the connection.
CVSS v3 Severity:5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): None
Availibility (A): None
CVSS v2 Severity:5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): None
Availibility (A): None
5.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): None
Availibility (A): None
Vulnerability Type:CWE-Other
Vulnerability Consequences:Obtain Information
References:Source: BUGTRAQ
Type: UNKNOWN
20000311 Our old friend Firewall-1

Source: CCN
Type: BugTraq Mailing List, Sat Mar 11 2000 - 20:28:59 CST
Our old friend Firewall-1

Source: MITRE
Type: CNA
CVE-2000-0181

Source: CCN
Type: Check Point Worldwide Technical Services
Download Section

Source: OSVDB
Type: UNKNOWN
1256

Source: CCN
Type: OSVDB ID: 1256
Check Point FireWall-1 Internal IP Address Exposure

Source: CCN
Type: SANS Institute Global Incident Analysis Center
Egress Filtering v 0.2

Source: BID
Type: UNKNOWN
1054

Source: CCN
Type: BID-1054
Check Point Firewall-1 Internal Address Leakage Vulnerability

Source: XF
Type: UNKNOWN
checkpoint-exposes-internal-addresses(4207)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*
  • OR cpe:/a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*
  • OR cpe:/a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:checkpoint:firewall-1:*:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    checkpoint firewall-1 3.0
    checkpoint firewall-1 4.0
    checkpoint firewall-1 4.1
    checkpoint firewall-1 *