CNCVE编号:CNCVE-20001032 CVE编号:CVE-2000-1032 安全级别:中 漏洞中文描述: Check Point Firewall-1 4.0及较早版本的客户鉴定界面为:无效的用户名相对于无效的口令产生不同的错误消息,这允许远程攻击者可以在防火墙上识别有效的用户名。 漏洞英文描述: The client authentication interface for Check Point Firewall-1 4.0 and earlier generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to identify valid usernames on the firewall. 漏洞参考: 系统类型:其他 漏洞类型:其他