peter bassill · operator
$ cve CVE-2005-4093 JSON

CVE-2005-4093 EXPLOIT

6.5
MEDIUM · CVSS 2.0 · EPSS 3.1% (pctl 88)

Patch early

A public exploit exists.

Description

Check Point VPN-1 SecureClient NG with Application Intelligence R56, NG FP1, 4.0, and 4.1 allows remote attackers to bypass security policies by modifying the local copy of the local.scv policy file after it has been downloaded from the VPN Endpoint.

Scoring

CVSS6.5 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
EPSS3.15% — more likely to be exploited than 88% of all CVEs
WeaknessCWE-264
On CISA KEVno
Public exploityes
Published2005-12-08
Last modified2026-06-16

Affected (2)

VendorProduct
checkpointsecureclient ng
checkpointvpn-1 secureclient

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD