漏洞描述
CVE-2024-24919 is an information disclosure vulnerability that can allow an attacker to access certain information on internet-connected Gateways which have been configured with IPSec VPN, remote access VPN, or mobile access software blade.
影响产品
修复建议
建议关注厂商安全公告,及时升级至已修复版本,并结合实际资产暴露情况采取缓解措施。
参考链接
labs.watchtowr.comhttps://labs.watchtowr.com/check-point-wrong-check-point-cve-2024-24919/↗support.checkpoint.comhttps://support.checkpoint.com/results/sk/sk182337↗s4e.iohttps://s4e.io/tools/check-point-quantum-gateway-information-disclosure-cve-2024-24919↗thehackernews.comhttps://thehackernews.com/2024/05/check-point-warns-of-zero-day-attacks.html↗censys.comhttps://censys.com/cve-2024-24919/↗