CVE-2024-24919
Description
Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Software Blades. A Security fix that mitigates this vulnerability is available.
Summary dbcve.org
This is an information disclosure vulnerability in Check Point Security Gateways. When the Remote Access VPN or Mobile Access Software Blades are enabled and the gateway is connected to the internet, an unauthenticated attacker may be able to read certain sensitive information from the affected device.
Mitigation
Apply the Check Point security fix/patch to all affected Security Gateways. If Remote Access VPN or Mobile Access Software Blades are not required for business operations, consider disabling them to reduce the attack surface.