CVE-2024-52885

Path Traversal

Severity
Medium 5
CVSS 3.1
Exploited
Not listed
EPSS
0.005
39.5th percentile
Discovered by
Not disclosed
Published
Aug 6, 2025
Assigned by checkpoint

Description

The Mobile Access Portal's File Share application is vulnerable to a directory traversal attack, allowing an authenticated, malicious end-user (authorized to at least one File Share application) to list the file names of 'nobody'-accessible directories on the Mobile Access gateway.

Weakness: CWE-35

Affected products

Vendor Product Category Matched by
Check Point Mobile Access VPN & Remote Access cna-assigner
Vendor-reported products (1)
  • checkpoint · Check Point Mobile Access

Something wrong here?