HIGH
Check Point SofaWare Safe@Office, with firmware before Embedded NGX 7.0.45 GA, does not require entry of the old password when changing the admin password, which might allow attackers to gain privileges by conducting a CSRF attack, making a password change on an unattended workstation, or other vectors
Published Jun 27, 2007
8.5
HIGHCVSS 2.0
EPSS 1.05%
Description
Affected products
Remediation
Metrics
References (5)
Change history (0)
No recorded changes yet.