CVE-2024-52888

For an authenticated end-user the portal may run a script while attempting to display a directory or some file's properties.
References
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:checkpoint:mobile_access:-:*:*:*:*:*:*:*
cpe:2.3:a:checkpoint:remote_access_vpn:-:*:*:*:*:*:*:*
OR cpe:2.3:o:checkpoint:gaia_os:r81.10:*:*:*:*:*:*:*
cpe:2.3:o:checkpoint:gaia_os:r81.20:*:*:*:*:*:*:*
cpe:2.3:o:checkpoint:gaia_os:r82:*:*:*:*:*:*:*

History

02 Sep 2025, 18:37

Type Values Removed Values Added
First Time Checkpoint gaia Os
Checkpoint remote Access Vpn
Checkpoint mobile Access
Checkpoint
CPE cpe:2.3:a:checkpoint:mobile_access:-:*:*:*:*:*:*:*
cpe:2.3:o:checkpoint:gaia_os:r81.10:*:*:*:*:*:*:*
cpe:2.3:a:checkpoint:remote_access_vpn:-:*:*:*:*:*:*:*
cpe:2.3:o:checkpoint:gaia_os:r81.20:*:*:*:*:*:*:*
cpe:2.3:o:checkpoint:gaia_os:r82:*:*:*:*:*:*:*
References () https://support.checkpoint.com/results/sk/sk183055 - () https://support.checkpoint.com/results/sk/sk183055 - Vendor Advisory

29 Apr 2025, 13:52

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-27 08:15

Updated : 2025-09-02 18:37


NVD link : CVE-2024-52888

Mitre link : CVE-2024-52888

CVE.ORG link : CVE-2024-52888


JSON object : View

Products Affected

checkpoint

  • gaia_os
  • remote_access_vpn
  • mobile_access
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')