CVE-2024-52885 Details
Description
The Mobile Access Portal's File Share application is vulnerable to a directory traversal attack, allowing an authenticated, malicious end-user (authorized to at least one File Share application) to list the file names of 'nobody'-accessible directories on the Mobile Access gateway.
A directory traversal vulnerability has been identified in the File Share application of the Check Point Mobile Access Portal, available on the Mobile Access gateway. This vulnerability allows an authenticated user, with access to at least one File Share application, to list file names in 'nobody'-accessible directories on the gateway. Additionally, such a user can create arbitrary files with 'nobody' permissions in the '/tmp' directory on the gateway.
This vulnerability has been fixed in the Jumbo Hotfix Accumulator for R82 (starting from Take 36), R81.20 (starting from Take 111), and R81.10 (starting from Take 177).
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Aug 6, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://support.checkpoint.com/results/sk/sk183137 | [email protected] | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-22 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') | [email protected] |
| CWE-35 | Path Traversal: '.../...//' | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| checkpoint mobile access | All versions |
CPE
Remediation
| |
| checkpoint remote access vpn | All versions |
CPE
Remediation
| |
| checkpoint gaia os | r81.10 r81.20 r82 |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Aug 27, 2025 | Initial Analysis | [email protected] |
| Aug 6, 2025 | New CVE Received | [email protected] |