Firewall-1 does not properly filter script tags, which allows remote attackers to bypass the Strip Script Tags restriction by including an extra < in front of the SCRIPT tag.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Firewall-1 |
Checkpoint |
3.0 (including) |
3.0 (including) |
References