First published: Thu Jul 27 2006(Updated: )
Directory traversal vulnerability in Check Point Firewall-1 R55W before HFA03 allows remote attackers to read arbitrary files via an encoded .. (dot dot) in the URL on TCP port 18264.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Check Point FireWall-1 | =r55w | |
Check Point FireWall-1 | =r55w-hfa2 | |
Check Point FireWall-1 | =r55w-hfa1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-3885 has been classified as a medium-severity vulnerability.
To mitigate CVE-2006-3885, it is recommended to upgrade Check Point Firewall-1 R55W to HFA03 or later.
CVE-2006-3885 affects Check Point Firewall-1 R55W and its HFA1 and HFA2 updates.
CVE-2006-3885 allows remote attackers to exploit directory traversal to read arbitrary files.
CVE-2006-3885 is exploitable on TCP port 18264.