CVE-2024-24919: Check Point Quantum Security Gateways
EPSS99.9%No. 77 of 1739 in KEV
CVE year2024listed the same year
Same vendor in KEV5
Same product1
| Field | Value |
|---|---|
| Vendor | Check Point |
| Product | Quantum Security Gateways |
| Name | Check Point Quantum Security Gateways Information Disclosure Vulnerability |
| Added to KEV | 2024-05-30 |
| US federal due date | 2024-06-20 |
| Ransomware use | Known |
| CWE | CWE-200 |
CISA description
Check Point Quantum Security Gateways contain an unspecified information disclosure vulnerability. The vulnerability potentially allows an attacker to access information on Gateways connected to the internet, with IPSec VPN, Remote Access VPN or Mobile Access enabled. This issue affects several product lines from Check Point, including CloudGuard Network, Quantum Scalable Chassis, Quantum Security Gateways, and Quantum Spark Appliances.
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page
A Check Point Quantum Security Gateways vulnerability added to CISA's Known Exploited Vulnerabilities catalog on 2024-05-30.