ID

VAR-200706-0391


CVE

CVE-2007-3489


TITLE

Check Point VPN-1 Edge X Embedded type NGX Vulnerable to cross-site request forgery

Trust: 0.8

sources: JVNDB: JVNDB-2007-002260

DESCRIPTION

Cross-site request forgery (CSRF) vulnerability in pop/WizU.html in the management interface in Check Point VPN-1 Edge X Embedded NGX 7.0.33x on the Check Point VPN-1 UTM Edge allows remote attackers to perform privileged actions as administrators, as demonstrated by a request with the swuuser and swupass parameters, which adds an administrator account. NOTE: the CSRF attack has no timing window because there is no logout capability in the management interface. Vpn-1 Utm Edge is prone to a cross-site request forgery vulnerability. A remote attacker can perform privileged operations as an administrator, for example, requesting swuuser and swupass parameters can increase the administrator account

Trust: 1.98

sources: NVD: CVE-2007-3489 // JVNDB: JVNDB-2007-002260 // BID: 85639 // VULHUB: VHN-26851

AFFECTED PRODUCTS

vendor:checkpointmodel:vpn-1 utm edgescope:eqversion:7.0.33

Trust: 1.6

vendor:check pointmodel:vpn-1 utm edgescope:eqversion:ngx 7.0.33x

Trust: 0.8

vendor:checkpointmodel:vpn-1 utm edge utm edgescope:eqversion:7.0.33

Trust: 0.3

sources: BID: 85639 // JVNDB: JVNDB-2007-002260 // CNNVD: CNNVD-200706-544 // NVD: CVE-2007-3489

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2007-3489
value: HIGH

Trust: 1.0

NVD: CVE-2007-3489
value: HIGH

Trust: 0.8

CNNVD: CNNVD-200706-544
value: CRITICAL

Trust: 0.6

VULHUB: VHN-26851
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2007-3489
severity: HIGH
baseScore: 9.3
vectorString: AV:N/AC:M/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 8.6
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-26851
severity: HIGH
baseScore: 9.3
vectorString: AV:N/AC:M/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 8.6
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-26851 // JVNDB: JVNDB-2007-002260 // CNNVD: CNNVD-200706-544 // NVD: CVE-2007-3489

PROBLEMTYPE DATA

problemtype:NVD-CWE-Other

Trust: 1.0

sources: NVD: CVE-2007-3489

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200706-544

TYPE

unknown

Trust: 0.6

sources: CNNVD: CNNVD-200706-544

CONFIGURATIONS

sources: JVNDB: JVNDB-2007-002260

PATCH

title:checkpoint_070626url:http://www.louhi.fi/advisory/checkpoint_070626.txt

Trust: 0.8

sources: JVNDB: JVNDB-2007-002260

EXTERNAL IDS

db:NVDid:CVE-2007-3489

Trust: 2.8

db:SREASONid:2848

Trust: 2.0

db:VUPENid:ADV-2007-2363

Trust: 1.7

db:SECUNIAid:25853

Trust: 1.7

db:OSVDBid:37645

Trust: 1.1

db:XFid:35103

Trust: 0.9

db:JVNDBid:JVNDB-2007-002260

Trust: 0.8

db:CNNVDid:CNNVD-200706-544

Trust: 0.7

db:XFid:1

Trust: 0.6

db:BUGTRAQid:20070627 CHECKPOINT VPN-1 UTM EDGE CROSS SITE REQUEST FORGERY VULNERABILITY

Trust: 0.6

db:BIDid:85639

Trust: 0.4

db:VULHUBid:VHN-26851

Trust: 0.1

sources: VULHUB: VHN-26851 // BID: 85639 // JVNDB: JVNDB-2007-002260 // CNNVD: CNNVD-200706-544 // NVD: CVE-2007-3489

REFERENCES

url:http://www.louhi.fi/advisory/checkpoint_070626.txt

Trust: 2.0

url:http://securityreason.com/securityalert/2848

Trust: 2.0

url:http://secunia.com/advisories/25853

Trust: 1.7

url:http://www.securityfocus.com/archive/1/472371/100/0/threaded

Trust: 1.1

url:http://osvdb.org/37645

Trust: 1.1

url:http://www.vupen.com/english/advisories/2007/2363

Trust: 1.1

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/35103

Trust: 1.1

url:http://xforce.iss.net/xforce/xfdb/35103

Trust: 0.9

url:http://www.securityfocus.com/archive/1/archive/1/472371/100/0/threaded

Trust: 0.9

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2007-3489

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2007-3489

Trust: 0.8

url:http://www.frsirt.com/english/advisories/2007/2363

Trust: 0.6

sources: VULHUB: VHN-26851 // BID: 85639 // JVNDB: JVNDB-2007-002260 // CNNVD: CNNVD-200706-544 // NVD: CVE-2007-3489

CREDITS

Unknown

Trust: 0.3

sources: BID: 85639

SOURCES

db:VULHUBid:VHN-26851
db:BIDid:85639
db:JVNDBid:JVNDB-2007-002260
db:CNNVDid:CNNVD-200706-544
db:NVDid:CVE-2007-3489

LAST UPDATE DATE

2025-04-10T21:52:14.900000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-26851date:2018-10-16T00:00:00
db:BIDid:85639date:2007-06-29T00:00:00
db:JVNDBid:JVNDB-2007-002260date:2012-06-26T00:00:00
db:CNNVDid:CNNVD-200706-544date:2007-07-02T00:00:00
db:NVDid:CVE-2007-3489date:2025-04-09T00:30:58.490

SOURCES RELEASE DATE

db:VULHUBid:VHN-26851date:2007-06-29T00:00:00
db:BIDid:85639date:2007-06-29T00:00:00
db:JVNDBid:JVNDB-2007-002260date:2012-06-26T00:00:00
db:CNNVDid:CNNVD-200706-544date:2007-06-29T00:00:00
db:NVDid:CVE-2007-3489date:2007-06-29T18:30:00