
CVE-2007-0471
https://notcve.org/view.php?id=CVE-2007-0471
24 Jan 2007 — sre/params.php in the Integrity Clientless Security (ICS) component in Check Point Connectra NGX R62 3.x and earlier before Security Hotfix 5, and possibly VPN-1 NGX R62, allows remote attackers to bypass security requirements via a crafted Report parameter, which returns a valid ICSCookie authentication token. El archivo sre/params.php en el componente Integrity Clientless Security (ICS) en Check Point Connectra NGX R62 versión 3.x y anteriores a Security Hotfix versión 5, y posiblemente VPN-1 NGX R62, per... • http://lists.grok.org.uk/pipermail/full-disclosure/2007-January/051920.html • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2005-2889
https://notcve.org/view.php?id=CVE-2005-2889
14 Sep 2005 — Check Point NGX R60 does not properly verify packets against the predefined service group "CIFS" rule, which allows remote attackers to bypass intended restrictions. • http://marc.info/?l=bugtraq&m=112611529724821&w=2 •