CVE-2003-0757 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 2.8% (pctl 86)
Patch early
A public exploit exists.
Description
Check Point FireWall-1 4.0 and 4.1 before SP5 allows remote attackers to obtain the IP addresses of internal interfaces via certain SecuRemote requests to TCP ports 256 or 264, which leaks the IP addresses in a reply packet.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
| EPSS | 2.85% — more likely to be exploited than 86% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2003-10-20 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| checkpoint | firewall-1 |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Check Point Firewall-1 4.x - SecuRemote Internal Interface Address Information Leakage | 2001-07-17 |
References
→ the Explorer · watch your stack · NVD