Firewall-1 does not properly filter script tags, which allows remote attackers to bypass the Strip Script Tags restriction by including an extra < in front of the SCRIPT tag.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Firewall-1 | Checkpoint | 3.0 (including) | 3.0 (including) |
References