Unrated severityNVD Advisory· Published Dec 11, 2000· Updated Apr 16, 2026
CVE-2000-1037
CVE-2000-1037
Description
Check Point Firewall-1 session agent 3.0 through 4.1 generates different error messages for invalid user names versus invalid passwords, which allows remote attackers to determine valid usernames and guess a password via a brute force attack.
Affected products
3cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:checkpoint:firewall-1:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:checkpoint:firewall-1:4.0:*:*:*:*:*:*:*
- cpe:2.3:a:checkpoint:firewall-1:4.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.securityfocus.com/bid/1662nvdExploitVendor Advisory
- www.securityfocus.com/archive/1/76389nvdVendor Advisory
News mentions
0No linked articles in our index yet.