<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: HTTP Header vulnerabilities in the Mobile Access Portal in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/157217#M6283</link>
    <description>&lt;P&gt;Thanks, will do&lt;/P&gt;</description>
    <pubDate>Wed, 14 Sep 2022 11:30:58 GMT</pubDate>
    <dc:creator>Gaurav_Pandya</dc:creator>
    <dc:date>2022-09-14T11:30:58Z</dc:date>
    <item>
      <title>HTTP Header vulnerabilities in the Mobile Access Portal</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/157074#M6281</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Compliance scan report detected&amp;nbsp;&lt;SPAN&gt;HTTP Header vulnerabilities in the Mobile Access Portal, mainly for X-XSS protection. I was checking sk138813 where we need to edit&amp;nbsp;&lt;EM&gt;$CVPNDIR/conf/httpd.conf&lt;/EM&gt;&amp;nbsp; file.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;We are running on R81.10 and in that sk138813, it is given till R80.40. So my question is, same procedure I need to apply for R81.10 as well?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 12 Sep 2022 16:26:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/157074#M6281</guid>
      <dc:creator>Gaurav_Pandya</dc:creator>
      <dc:date>2022-09-12T16:26:19Z</dc:date>
    </item>
    <item>
      <title>Re: HTTP Header vulnerabilities in the Mobile Access Portal</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/157077#M6282</link>
      <description>&lt;P&gt;Believe it would be the same procedure&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 12 Sep 2022 17:39:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/157077#M6282</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-09-12T17:39:32Z</dc:date>
    </item>
    <item>
      <title>Re: HTTP Header vulnerabilities in the Mobile Access Portal</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/157217#M6283</link>
      <description>&lt;P&gt;Thanks, will do&lt;/P&gt;</description>
      <pubDate>Wed, 14 Sep 2022 11:30:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/157217#M6283</guid>
      <dc:creator>Gaurav_Pandya</dc:creator>
      <dc:date>2022-09-14T11:30:58Z</dc:date>
    </item>
    <item>
      <title>Re: HTTP Header vulnerabilities in the Mobile Access Portal</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/210183#M6284</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/8251"&gt;@Gaurav_Pandya&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Did you apply this SK on top of R81.20 already? I tried them back in R81.10 and it worked fine but now when I applied them in R81.20 I had SNX random disconnects from users.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;PM&lt;/P&gt;</description>
      <pubDate>Mon, 01 Apr 2024 14:27:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/210183#M6284</guid>
      <dc:creator>Pedro_Madeira</dc:creator>
      <dc:date>2024-04-01T14:27:23Z</dc:date>
    </item>
    <item>
      <title>Re: HTTP Header vulnerabilities in the Mobile Access Portal</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/210343#M6285</link>
      <description>&lt;P&gt;Hi Pedro,&lt;/P&gt;
&lt;P&gt;Same here, we are facing SNX issue after upgrading to R81.20. We tried take 43 &amp;amp; 41 but no luck. TAC is opened for the same.&lt;/P&gt;</description>
      <pubDate>Wed, 03 Apr 2024 11:20:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/210343#M6285</guid>
      <dc:creator>Gaurav_Pandya</dc:creator>
      <dc:date>2024-04-03T11:20:01Z</dc:date>
    </item>
    <item>
      <title>Re: HTTP Header vulnerabilities in the Mobile Access Portal</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/210345#M6286</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/8251"&gt;@Gaurav_Pandya&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your reply.&lt;/P&gt;&lt;P&gt;In the service request we have opened with TAC, we pointed them to this threat to see if both service request assigned engineers could talk between them and exchange notes. Since you're experiencing the same problem, it's not something unique on our end.&lt;/P&gt;&lt;P&gt;so perhaps R&amp;amp;D needs to take a look at this.&lt;/P&gt;&lt;P&gt;If I have any news on my side, I will let you know.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;Pedro Madeira&lt;/P&gt;</description>
      <pubDate>Wed, 03 Apr 2024 11:28:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/HTTP-Header-vulnerabilities-in-the-Mobile-Access-Portal/m-p/210345#M6286</guid>
      <dc:creator>Pedro_Madeira</dc:creator>
      <dc:date>2024-04-03T11:28:20Z</dc:date>
    </item>
  </channel>
</rss>

