Vulnerabilities > Checkpoint > VPN 1 > 4.1

DATE CVE VULNERABILITY TITLE RISK
2006-01-18 CVE-2006-0255 Local Privilege Escalation vulnerability in Checkpoint Vpn-1 4.1
Unquoted Windows search path vulnerability in Check Point VPN-1 SecureClient might allow local users to gain privileges via a malicious "program.exe" file in the C: folder, which is run when SecureClient attempts to launch the Sr_GUI.exe program.
local
low complexity
checkpoint
7.2
2004-03-03 CVE-2004-0040 Buffer Overflow vulnerability in Check Point VPN-1/SecuRemote ISAKMP Large Certificate Request Payload
Stack-based buffer overflow in Check Point VPN-1 Server 4.1 through 4.1 SP6 and Check Point SecuRemote/SecureClient 4.1 through 4.1 build 4200 allows remote attackers to execute arbitrary code via an ISAKMP packet with a large Certificate Request packet.
network
low complexity
checkpoint
critical
10.0
2001-12-31 CVE-2001-1499 Unspecified vulnerability in Checkpoint Vpn-1 4.1
Check Point VPN-1 4.1SP4 using SecuRemote returns different error messages for valid and invalid users, with prompts that vary depending on the authentication method being used, which makes it easier for remote attackers to conduct brute force attacks.
network
low complexity
checkpoint
5.0
2001-10-08 CVE-2001-1431 Information Disclosure vulnerability in VPN-1
Nokia Firewall Appliances running IPSO 3.3 and VPN-1/FireWall-1 4.1 Service Pack 3, IPSO 3.4 and VPN-1/FireWall-1 4.1 Service Pack 4, and IPSO 3.4 or IPSO 3.4.1 and VPN-1/FireWall-1 4.1 Service Pack 5, when SYN Defender is configured in Active Gateway mode, does not properly rewrite the third packet of a TCP three-way handshake to use the NAT IP address, which allows remote attackers to gain sensitive information.
network
low complexity
checkpoint nokia
5.0
2001-07-12 CVE-2001-1176 Unspecified vulnerability in Checkpoint Firewall-1, Provider-1 and Vpn-1
Format string vulnerability in Check Point VPN-1/FireWall-1 4.1 allows a remote authenticated firewall administrator to execute arbitrary code via format strings in the control connection.
network
low complexity
checkpoint
7.5