High severity7.8NVD Advisory· Published Feb 8, 2008· Updated Apr 23, 2026
CVE-2008-0662
CVE-2008-0662
Description
The Auto Local Logon feature in Check Point VPN-1 SecuRemote/SecureClient NGX R60 and R56 for Windows caches credentials under the Checkpoint\SecuRemote registry key, which has Everyone/Full Control permissions, which allows local users to gain privileges by reading and reusing the credentials.
Affected products
2cpe:2.3:a:checkpoint:vpn-1_secureclient:ngai_r56:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:checkpoint:vpn-1_secureclient:ngai_r56:*:*:*:*:*:*:*
- cpe:2.3:a:checkpoint:vpn-1_secureclient:ngx_r60:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.securityfocus.com/archive/1/487735/100/0/threadednvdBroken LinkThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/27675nvdBroken LinkThird Party AdvisoryVDB Entry
- www.securitytracker.com/idnvdBroken LinkThird Party AdvisoryVDB Entry
- digihax.comnvdNot Applicable
- secunia.com/advisories/28820nvdBroken Link
- securityreason.com/securityalert/3627nvdBroken Link
- www.vupen.com/english/advisories/2008/0475nvdPermissions Required
- usercenter.checkpoint.com/usercenter/portal/user/anon/page/supportCenter.psmlnvdNot Applicable
News mentions
0No linked articles in our index yet.