First published: Sat Jan 29 2000(Updated: )
Firewall-1 does not properly filter script tags, which allows remote attackers to bypass the "Strip Script Tags" restriction by including an extra < in front of the SCRIPT tag.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Check Point FireWall-1 | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0116 is considered a medium severity vulnerability due to its potential to allow script injection.
To fix CVE-2000-0116, upgrade your Check Point FireWall-1 to a version that addresses this vulnerability.
CVE-2000-0116 allows remote attackers to bypass script tag restrictions, leading to potential malicious script execution.
Yes, Check Point FireWall-1 version 3.0 is vulnerable to CVE-2000-0116 if it does not have the necessary patches applied.
CVE-2000-0116 can facilitate cross-site scripting (XSS) attacks by allowing unauthorized users to inject script code.