CVE-2024-24919
unknown
KEV
CVSS v3
—
CVSS v2
—
VIR risk
1.5
Description
Check Point Quantum Security Gateways contain an unspecified information disclosure vulnerability. The vulnerability potentially allows an attacker to access information on Gateways connected to the internet, with IPSec VPN, Remote Access VPN or Mobile Access enabled. This issue affects several product lines from Check Point, including CloudGuard Network, Quantum Scalable Chassis, Quantum Security Gateways, and Quantum Spark Appliances.
CISA KEV
- Vendor
- Check Point
- Product
- Quantum Security Gateways
- Due date
- 2024-06-20
Predictions
Exploit likelihood
99%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cisa-kev — https://support.checkpoint.com/results/sk/sk182336 ; https://nvd.nist.gov/vuln/detail/CVE-2024-24919
Exploits
References
Verify integrity in audit chain (admin only). AS-IS.