Vulnerability Name: | CVE-2001-1176 (CCN-6849) | ||||||||
Assigned: | 2001-07-11 | ||||||||
Published: | 2001-07-11 | ||||||||
Updated: | 2017-10-10 | ||||||||
Summary: | Format string vulnerability in Check Point VPN-1/FireWall-1 4.1 allows a remote authenticated firewall administrator to execute arbitrary code via format strings in the control connection. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||
References: | Source: BUGTRAQ Type: Patch, Vendor Advisory 20010712 VPN-1/FireWall-1 Format Strings Vulnerability Source: CCN Type: BugTraq Mailing List, Thu Jul 12 2001 - 07:41:24 CDT VPN-1/FireWall-1 Format Strings Vulnerability Source: MITRE Type: CNA CVE-2001-1176 Source: CCN Type: Check Point Technical Support Alert July 11, 2001 Format Strings Vulnerability Source: CONFIRM Type: UNKNOWN http://www.checkpoint.com/techsupport/alerts/format_strings.html Source: OSVDB Type: UNKNOWN 1901 Source: CCN Type: OSVDB ID: 1901 Check Point FireWall-1/VPN-1 Management Station Escalation Source: BID Type: Patch, Vendor Advisory 3021 Source: CCN Type: BID-3021 Check Point Firewall-1/VPN-1 Management Station Format String Vulnerability Source: XF Type: UNKNOWN fw1-management-format-string(6849) Source: XF Type: UNKNOWN fw1-management-format-string(6849) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |