First published: Sat Nov 30 2013(Updated: )
Unlock.exe in Media Encryption EPM Explorer in Check Point Endpoint Security through E80.50 does not associate password failures with a device ID, which makes it easier for physically proximate attackers to bypass the device-locking protection mechanism by overwriting DVREM.EPM with a copy of itself after each few password guesses.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Checkpoint Endpoint Security | =e80 | |
Checkpoint Endpoint Security | =e80.10 | |
Checkpoint Endpoint Security | =e80.20 | |
Checkpoint Endpoint Security | =e80.30 | |
Checkpoint Endpoint Security | =e80.40 | |
Checkpoint Endpoint Security | =e80.41 | |
Checkpoint Endpoint Security | =e80.50 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.