Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2026-50752

около 2 месяцев назад

A weakness in the certificate validation logic of the deprecated IKEv1 key exchange may allow an unauthenticated attacker positioned as a man-in-the-middle to bypass certificate validation in VPN site-to-site connections that use certificate-based authentication. Successful exploitation could allow interception or modification of traffic traversing the VPN tunnel.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-89xv-5cj4-39m4

около 2 месяцев назад

A weakness in the certificate validation logic of the deprecated IKEv1 key exchange may allow an unauthenticated attacker positioned as a man-in-the-middle to bypass certificate validation in VPN site-to-site connections that use certificate-based authentication. Successful exploitation could allow interception or modification of traffic traversing the VPN tunnel.

CVSS3: 7.4
EPSS: Низкий
fstec логотип

BDU:2026-08064

2 месяца назад

Уязвимость реализации протокола Internet Key Exchange (IKEv1) межсетевых экранов Check Point Security Gateways и Check Point Spark Firewall, позволяющая нарушителю проводить атаки типа "человек посередине" и обойти проверку сертификатов в VPN-соединении

CVSS3: 7.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-50752

A weakness in the certificate validation logic of the deprecated IKEv1 key exchange may allow an unauthenticated attacker positioned as a man-in-the-middle to bypass certificate validation in VPN site-to-site connections that use certificate-based authentication. Successful exploitation could allow interception or modification of traffic traversing the VPN tunnel.

CVSS3: 7.4
5%
Низкий
около 2 месяцев назад
github логотип
GHSA-89xv-5cj4-39m4

A weakness in the certificate validation logic of the deprecated IKEv1 key exchange may allow an unauthenticated attacker positioned as a man-in-the-middle to bypass certificate validation in VPN site-to-site connections that use certificate-based authentication. Successful exploitation could allow interception or modification of traffic traversing the VPN tunnel.

CVSS3: 7.4
5%
Низкий
около 2 месяцев назад
fstec логотип
BDU:2026-08064

Уязвимость реализации протокола Internet Key Exchange (IKEv1) межсетевых экранов Check Point Security Gateways и Check Point Spark Firewall, позволяющая нарушителю проводить атаки типа "человек посередине" и обойти проверку сертификатов в VPN-соединении

CVSS3: 7.4
5%
Низкий
2 месяца назад

Уязвимостей на страницу