The Mobile Access Portal's File Share application is vulnerable to a directory traversal attack, allowing an authenticated, malicious end-user (authorized to at least one File Share application) to list the file names of 'nobody'-accessible directories on the Mobile Access gateway.
References
Link | Resource |
---|---|
https://support.checkpoint.com/results/sk/sk183137 |
Configurations
No configuration.
History
06 Aug 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-08-06 15:15
Updated : 2025-08-06 20:23
NVD link : CVE-2024-52885
Mitre link : CVE-2024-52885
CVE.ORG link : CVE-2024-52885
JSON object : View
Products Affected
No product.
CWE
CWE-35
Path Traversal: '.../...//'