Vulnerability Details CVE-2000-1037
Check Point Firewall-1 session agent 3.0 through 4.1 generates different error messages for invalid user names versus invalid passwords, which allows remote attackers to determine valid usernames and guess a password via a brute force attack.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.078
EPSS Ranking 91.5%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2000-1037
-
cpe:2.3:a:checkpoint:firewall-1:3.0
-
cpe:2.3:a:checkpoint:firewall-1:4.0
-
cpe:2.3:a:checkpoint:firewall-1:4.1