Check Point SecuRemote Hostname Information Disclosure

info Nessus Plugin ID 58409

Synopsis

The remote host may have an information leak.

Description

Sending a query to the Check Point SecuRemote service can be used to obtain the hostnames of the firewall and the logging or management station. In some environments this may be considered sensitive information that an attacker could obtain and use to mount further attacks.

See Also

http://www.nessus.org/u?ec13da59

http://www.nessus.org/u?f4dd7eff

Plugin Details

Severity: Info

ID: 58409

File Name: cpfw_securemote_info_leak.nasl

Version: 1.7

Type: remote

Family: Firewalls

Published: 3/21/2012

Updated: 8/17/2018

Supported Sensors: Nessus

Vulnerability Information

CPE: cpe:/a:checkpoint:firewall-1, cpe:/a:checkpoint:vpn-1

Reference Information

BID: 52430