Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2003-0757

EPSS 6.68% · P91
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2003-0757

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Check Point FireWall-1 4.0 and 4.1 before SP5 allows remote attackers to obtain the IP addresses of internal interfaces via certain SecuRemote requests to TCP ports 256 or 264, which leaks the IP addresses in a reply packet.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Check Point Firewall-1 SecuRemote内部接口地址信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Check Point FireWall-1 4.0和4.1(SP5之前)包含SecuRemote允许移动用户使用加密和验证会话连接内部网络。 在SecuRemote和Firewall-1初始化非加密通信阶段,发送的分组包含防火墙的所有IP地址,包括关联的内部接口,攻击者因此可以通过嗅探获得内部IP地址信息。 在IRM的测试过程中,Check Point Firewall-1设备上的内部IP地址会被泄露。通过telnet连接Firewall-1 4.0和4.1版本的256 TCP端口,输入下列字符: aa
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2003-0757

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2003-0757

登录查看更多情报信息。

Same Patch Batch · n/a · 2003-09-06 · 15 CVEs total

CVE-2003-0743Exim畸形EHLO/HELO命令远程堆破坏漏洞
CVE-2003-0744Leafnode fetchnews远程拒绝服务攻击漏洞
CVE-2003-0745Castle Rock Computing SNMPc v5/v6未授权远程访问漏洞
CVE-2003-0746分布式计算环境(DCE)服务拒绝漏洞
CVE-2003-0747SAP Internet Transaction Server远程信息泄露漏洞
CVE-2003-0748SAP Internet Transaction Server远程目录遍历漏洞
CVE-2003-0749SAP Internet Transaction Server跨站脚本执行漏洞
CVE-2003-0750PY-Membres漏洞
CVE-2003-0751PY-Membres SQL注入漏洞
CVE-2003-0752global.php3 of AttilaPHP SQL注入漏洞
CVE-2003-0753newsPHP nphpd.php漏洞
CVE-2003-0754newsPHP nphpd.php漏洞
CVE-2003-0755gtkftpd缓冲区溢出漏洞
CVE-2003-0756SiteBuilder目录遍历漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2003-0757

No comments yet


Leave a comment