Vulnerability of Firewall-1: file reading

Synthesis of the vulnerability 

An attacker can connect to the 18264/tcp web server in order to read a file from system.
Impacted systems: FW-1.
Severity of this alert: 3/4.
Creation date: 25/07/2006.
Description of the vulnerability 

A web server, used for CRL (Certificate Revocation Lists) and User Registration Services, listens on port 18264/tcp (FW1_ica_services).

This web server does not correctly filter characters in uri, which permits an attacker to escape from web root's jail. This vulnerability may only affect Windows platforms.

This vulnerability permits a remote attacker to read file located on computer.
This security note impacts software or systems such as FW-1.

Our Vigil@nce team determined that the severity of this threat announce is important.

The trust level is of type confirmed by the editor, with an origin of internet client.

An attacker with a expert ability can exploit this computer weakness announce.

Solutions for this threat 

Firewall-1: version NG AI R54 HFA_414.
Version NG AI R54 HFA_414 is corrected.

Firewall-1: version NG AI R55 HFA_12.
Version NG AI R55 HFA_12 is corrected.

Firewall-1: version NG AI R55W HFA_03.
Version NG AI R55W HFA_03 is corrected.
