网络安全

漏洞威胁:Check Point Security Gateways 任意文件读取漏洞

发布时间:2024-06-07   浏览次数:0

Check Point Security Gateways 存在任意文件下载漏洞,攻击者可以利用该漏洞读取任意文件,导致信息泄露。

目前受影响的 Check Point-Security Gateways 版本:

Check Point Security Gateways R77.20EOL

Check Point Security Gateways R77.30EOL

Check Point Security Gateways R80.10EOL

Check Point Security Gateways R80.20EOL

R80.20.0 < Check Point Security Gateways < R80.30.0

Check Point Security Gateways R80.20SPEOL

Check Point Security Gateways R80.30EOL

Check Point Security Gateways R80.30SPEOL

Check Point Security Gateways R80.40EOL

Check Point Security Gateways R81

Check Point Security Gateways R81.10

R81.10.0 < Check Point Security Gateways ≤ R81.20

官方解决方案:

目前官方在最新版本中修复了该漏洞,受影响用户可安装以下版本规避风险:

Quantum Security Gateway :R80.40、R81、R81.10、R81.20

Quantum Maestro 和 Quantum Scalable Chassis:R80.20SP 、R80.30SP

Quantum Spark Appliances:R81.10.10、R81.10.08、R80.20.60、R77.20.87、R77.20.81

下载链接:https://support.checkpoint.com/results/sk/sk182336