First published: Tue Jun 08 2021(Updated: )
SSL Network Extender Client for Linux before build 800008302 reveals part of the contents of the configuration file supplied, which allows partially disclosing files to which the user did not have access.
Credit: cve@checkpoint.com
Affected Software | Affected Version | How to fix |
---|---|---|
Checkpoint Ssl Network Extender | =r80.10 | |
Checkpoint Ssl Network Extender | =r80.20 | |
Checkpoint Ssl Network Extender | =r80.30 | |
Checkpoint Ssl Network Extender | =r80.40 | |
Checkpoint Ssl Network Extender | =r81 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-30357 is medium with a CVSS score of 5.3.
CVE-2021-30357 affects SSL Network Extender Client for Linux versions r80.10, r80.20, r80.30, r80.40, and r81.
CVE-2021-30357 allows an attacker to partially disclose files to which the user did not have access.
Yes, an update to build 800008302 of SSL Network Extender Client for Linux is available to address CVE-2021-30357.
You can find more information about CVE-2021-30357 at the official Check Point support website: https://supportcontent.checkpoint.com/solutions?id=sk173513