The Vigil@nce team watches public vulnerabilities impacting your computers, and then offers security solutions, a vigilance database and tools to fix them.

Computer vulnerabilities of SecuRemote

Check Point Endpoint Connect: command execution via DLL Preload
An attacker can create a malicious DLL and invite the victim to open Check Point Endpoint Connect in the same directory, in order to execute code...
BID-53925, CERTA-2012-AVI-318, CVE-2012-2753, sk76480, VIGILANCE-VUL-11688
Check Point Firewall VPN-1: obtaining the hostname
An unauthenticated attacker can send a query to the SecuRemote Topology service, in order to obtain the name of the firewall...
sk69360, VIGILANCE-VUL-11424
VPN-1: denial of service and information disclosure
In some cases, an attacker with a SecuRemote (SecureClient, SNX) access can intercept data of a site-to-site VPN...
BID-28299, CVE-2008-1397, sk34579, VIGILANCE-VUL-7677, VU#992585
VPN-1 SecuRemote/SecureClient: cached authentication
Authentication data stored by VPN-1 SecuRemote/SecureClient can be read from the registry...
BID-27675, CVE-2008-0662, sk34315, VIGILANCE-VUL-7557
VPN-1: program execution by SecureClient
An attacker can store a program on system, in order to make it run by SecureClient...
TZO-012006, VIGILANCE-VUL-5540
McAfee VirusScan: program execution by naPrdMgr.exe
An attacker can store a program on system, in order to make it run by naPrdMgr.exe...
BID-16040, CVE-2005-4505, VIGILANCE-VUL-5448
VPN-1 : obtention des logins de SecuRemote et SecureClient
Les informations de connexion de SecuRemote et SecureClient sont lisibles dans la base de registres...
BID-14221, CVE-2005-2313, V6-VPN1SECUREMOTECRED, VIGILANCE-VUL-5088
Buffer overflow à l'aide de données de ISAKMP
Durant la négociation d'un tunnel VPN, un attaquant peut envoyer des données ISAKMP illicites dans le but de faire exécuter du code sur la machine...
BID-10273, CVE-2004-0469, V6-FW1VPN1ISAKMPBOF, VIGILANCE-VUL-4158
Obtention des adresses IP internes
Un attaquant peut obtenir la liste des adresses IP internes du firewall à l'aide de SecuRemote...
BID-8524, CVE-2003-0757, V6-FW1SECUREMOTEIPINT, VIGILANCE-VUL-3746
Challenge non complet de SecureClient
Les sessions d'authentification longues peuvent être acceptées sans que l'échange complet n'ait eu lieu...
V6-FW1SECUREREMOTENOAUTH, VIGILANCE-VUL-1991
Our database contains other pages. You can request a free trial to read them.