AnsweredAssumed Answered

Vulnerability on CheckPoint Banner disclosure

Question asked by Prabulingam N on Jan 10, 2018
Latest reply on Jan 13, 2018 by Prabulingam N

Dear All,


I have a customer reporting on VA report with below:

Banner Disclosure: Fingerprinting

Per their VA scan - Outside Scan done on External IP of Firewall on Port:443


HTTP/1.0 404 Not found
Date: Thu, 21 Oct 2017 17:17:50 GMT
Server: Check Point SVN Foundation
Conten-Type: text/html
X-UA-Compatible: IE-EmulateIE7
Conenction: Close
X-Frame-Options: SAMEORIGIN
Last-Modified: Sat, 17 Jan 2015 19:00:00 GMT
Content-Length: 204

<TITLE>404 File Not Found >/TITLE>


Per above, it means that External person knows that the organisation is Protected by CheckPoint Firewall and can focus on some accurate methods inorder to enter internal networks.

So customer would like to make the Banner display: CheckPOint SVN Foundation to be masked.

Is there any possibility?


Note: Customer do not have IPS Blade 

Scan has done using Burp Suite Tool v1.7.03 Free edition

Any response would be helpful.


Regards, Prabulingam.N