The seed generation mechanism in the inter-module S/Key authentication mechanism in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass authentication via a brute force attack, aka One-time (s/key) Password Authentication.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Firewall-1 | Checkpoint | 3.0 (including) | 3.0 (including) |
Firewall-1 | Checkpoint | 4.0 (including) | 4.0 (including) |
Firewall-1 | Checkpoint | 4.1 (including) | 4.1 (including) |