>> Check Point Safe@Office Appliances Cross Site Request Forgery Vulnerability
Title : Check Point Safe@Office Appliances Cross Site Request Forgery Vulnerability VUPEN ID : VUPEN/ADV-2007-2364 CVE ID : CVE-2007-3462 - CVE-2007-3464 - CVE-2007-3465
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-06-28
Technical Description
A vulnerability has been identified in Check Point Safe@Office Appliances, which could be exploited by attackers to execute arbitrary requests. This issue is caused by input validation errors in the web interface that fails to properly validate HTTP requests, which could be exploited by attackers to bypass security restrictions and manipulate certain data by tricking an administrator into following a malicious URL.