HTTP: Check Point Security Gateway Information Disclosure

This signature detects attempts to exploit a known vulnerability against Check Point Security Gateway. A successful attack can lead to sensitive information disclosure.

Extended Description

Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Software Blades. A Security fix that mitigates this vulnerability is available.

Affected Products

Checkpoint cloudguard_network_security

Short Name
HTTP:CTS:CHKPNT-GTWY-INFO-DSCLS
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2024-24919 Check Disclosure Gateway Information Point Security
Release Date
06/10/2024
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3715
False Positive
Unknown
Vendors

Checkpoint

CVSS Score

8.6

Found a potential security threat?