MEDIUM · 6.5

CVE-2005-4093

Check Point VPN-1 SecureClient NG with Application Intelligence R56, NG FP1, 4.0, and 4.1 allows remote attackers to bypass security policies by modifying the local copy of the local.scv policy file a...

Vulnerability Description

Check Point VPN-1 SecureClient NG with Application Intelligence R56, NG FP1, 4.0, and 4.1 allows remote attackers to bypass security policies by modifying the local copy of the local.scv policy file after it has been downloaded from the VPN Endpoint.

CVSS Score

6.5

MEDIUM

AV:N/AC:L/Au:S/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
CheckpointSecureclient NgAll versions
CheckpointVpn-1 Secureclient4.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2005-4093?

CVE-2005-4093 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Check Point VPN-1 SecureClient NG with Application Intelligence R56, NG FP1, 4.0, and 4.1 allows remote attackers to bypass security policies by modifying the local copy of the local.scv policy file a...

How severe is CVE-2005-4093?

CVE-2005-4093 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2005-4093?

Check the references section above for vendor advisories and patch information. Affected products include: Checkpoint Secureclient Ng, Checkpoint Vpn-1 Secureclient.