"Check Point Issues Emergency Fix for VPN Zero-Day Amid Rising Attacks"

1 min read
Source: The Hacker News
"Check Point Issues Emergency Fix for VPN Zero-Day Amid Rising Attacks"
Photo: The Hacker News
TL;DR Summary

Check Point has issued a warning about a zero-day vulnerability (CVE-2024-24919) in its Network Security gateway products, which has been actively exploited. The flaw, with a CVSS score of 7.5, affects various Quantum and CloudGuard products and allows attackers to read information on Internet-connected gateways with remote access VPN or mobile access enabled. Hotfixes are available for affected versions. The vulnerability has been exploited since April 30, 2024, allowing unauthorized actors to extract password hashes and Active Directory data, leading to potential lateral movement within networks.

Share this article

Reading Insights

Total Reads

0

Unique Readers

4

Time Saved

2 min

vs 3 min read

Condensed

85%

56386 words

Want the full story? Read the original article

Read on The Hacker News