Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Software Blades. A Security fix that mitigates this vulnerability is available.
Published: 2024-05-29
Amid warnings of threat actors targeting VPN devices, Check Point has identified a zero-day information disclosure vulnerability impacting Check Point Network Security gateways which has been exploited by malicious actors.
https://thehackernews.com/2024/09/chinese-hackers-exploit-visual-studio.html
https://www.cisa.gov/news-events/cybersecurity-advisories/aa24-241a
https://www.greynoise.io/blog/whats-going-on-with-checkpoint-cve-2024-24919
https://thehackernews.com/2024/05/cisa-alerts-federal-agencies-to-patch.html
https://blog.checkpoint.com/security/enhance-your-vpn-security-posture