CVE-2024-52885 is a directory traversal vulnerability affecting Check Point Mobile Access Portal's File Share application, impacting Gaia OS, Mobile Access, and Remote Access VPN products. An authenticated user can exploit this to list filenames in 'nobody'-accessible directories on the Mobile Access gateway. Rated 5.4 MEDIUM, it requires low privileges and network access, with a low impact on confidentiality and integrity. There is currently no known public exploit code, active exploitation, or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:checkpoint:mobile_access:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:checkpoint:remote_access_vpn:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.