Vulnerability Name: | CVE-2011-2664 (CCN-68502) | ||||||||
Assigned: | 2011-07-07 | ||||||||
Published: | 2011-07-07 | ||||||||
Updated: | 2017-08-29 | ||||||||
Summary: | Unspecified vulnerability in Check Point Multi-Domain Management / Provider-1 NGX R65, R70, R71, and R75, and SmartCenter during installation on non-Windows machines, allows local users on the MDS system to overwrite arbitrary files via unknown vectors. | ||||||||
CVSS v3 Severity: | 2.8 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N)
| ||||||||
CVSS v2 Severity: | 3.6 Low (CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:P/A:P) 2.6 Low (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:P/A:P/E:U/RL:OF/RC:C)
1.3 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:S/C:N/I:P/A:N/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-noinfo | ||||||||
Vulnerability Consequences: | File Manipulation | ||||||||
References: | Source: MITRE Type: CNA CVE-2011-2664 Source: CCN Type: SA45231 Check Point Multi-Domain Management / Provider-1 File Overwrite Vulnerability Source: SECUNIA Type: UNKNOWN 45231 Source: CCN Type: OSVDB ID: 73863 Check Point Multi-Domain Management / Provider-1 Unspecified Arbitrary File Overwrite Source: BID Type: UNKNOWN 48656 Source: CCN Type: BID-48656 Check Point Provider-1 Unspecified Local Security Vulnerability Source: CCN Type: BID-49162 Check Point Security Management Post Installation Script Temporary File Creation Vulnerability Source: XF Type: UNKNOWN checkpoint-multiodomain-mds-file-overwrite(68502) Source: XF Type: UNKNOWN checkpoint-multiodomain-mds-file-overwrite(68502) Source: CCN Type: Check Point Web site File overwrite vulnerability in Multi-Domain Management / Provider-1 script Source: CONFIRM Type: Patch, Vendor Advisory https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk63565 | ||||||||
Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||
BACK |