Check.Point.Quantum.Security.Gateways.Path.Traversal.
Description
This indicates an attack attempt to exploit an Information Disclosure vulnerability in Check Point Security Gateways. The vulnerability is due to an error when the vulnerable software handles a maliciously crafted request. A remote, unauthenticated attacker could exploit this vulnerability by sending a crafted request to the target server. Successfully exploiting this vulnerability could result in the disclosure of sensitive information.
Outbreak Alert
Attackers exploit a zero-day vulnerability affecting Check Point Security Gateways to gain remote access. The vulnerability can allow attackers to read sensitive information on Check Point Security Gateways enabled with remote Access VPN or Mobile Access Software Blades.
Affected Products
Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.
Impact
Check Point CloudGuard Network, Quantum Maestro, Quantum Scalable Chassis, Quantum Security Gateways, Quantum Spark Appliances Version R77.20 (EOL), R77.30 (EOL), R80.10 (EOL), R80.20 (EOL), R80.20.x, R80.20SP (EOL), R80.30 (EOL), R80.30SP (EOL), R80.40 (EOL), R81, R81.10, R81.10.x, R81.20
Recommended Actions
Apply the most recent upgrade or patch from the vendor. https://support.checkpoint.com/results/sk/sk182336
Version Updates
| Date | Version | Status | Detail |
|---|---|---|---|
| 2024-06-12 | 28.806 |
New
|