CVE-2024-52888

For an authenticated end-user the portal may run a script while attempting to display a directory or some file's properties.
References
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:checkpoint:mobile_access:-:*:*:*:*:*:*:*
cpe:2.3:a:checkpoint:remote_access_vpn:-:*:*:*:*:*:*:*
OR cpe:2.3:o:checkpoint:gaia_os:r81.10:*:*:*:*:*:*:*
cpe:2.3:o:checkpoint:gaia_os:r81.20:*:*:*:*:*:*:*
cpe:2.3:o:checkpoint:gaia_os:r82:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-04-27 08:15

Updated : 2025-09-02 18:37


NVD link : CVE-2024-52888

Mitre link : CVE-2024-52888

CVE.ORG link : CVE-2024-52888


JSON object : View

Products Affected

checkpoint

  • mobile_access
  • gaia_os
  • remote_access_vpn
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')