Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
the_rock
Legend
Legend

Check Point response to CVE-2024-24914

Hey guys,

I see this just came out today, hopefully there will be IPS protection soon.

Andy

sk182743 - Check Point response to CVE-2024-24914 - TCL substitution of global parameter values

 

0 Kudos
2 Replies
Lesley
Leader Leader
Leader

Always good to fix, but the SK says: "After logging in to Gaia Portal, authenticated users"

After this point an attacker has already a lot of access in the network. I hope all admin's restrict access to the gaia portal. 

Only thing I can think of is that for example a read-only users logs in and uses this CVE to gain more access then only RO. 

-------
If you like this post please give a thumbs up(kudo)! 🙂
0 Kudos
the_rock
Legend
Legend

Thats a good point, agree.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events