Vulnerability Details CVE-2024-52885
The Mobile Access Portal's File Share application is vulnerable to a directory traversal attack, allowing an authenticated, malicious end-user (authorized to at least one File Share application) to list the file names of 'nobody'-accessible directories on the Mobile Access gateway.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 26.8%
CVSS Severity
CVSS v3 Score 5.0
Products affected by CVE-2024-52885
-
cpe:2.3:a:checkpoint:mobile_access:-
-
cpe:2.3:a:checkpoint:remote_access_vpn:-
-
cpe:2.3:o:checkpoint:gaia_os:r81.10
-
cpe:2.3:o:checkpoint:gaia_os:r81.20
-
cpe:2.3:o:checkpoint:gaia_os:r82