A vulnerability in Check Point Gaia Portal allows an authenticated attacker with read-only Gaia Portal privileges to execute commands with root privileges.
A vulnerability in Check Point Gaia Portal allows an authenticated attacker with read-only Gaia Portal privileges to execute commands with root privileges.
영향 제품·버전
제품 checkpoint Quantum Security Gateway, Quantum Security Management
영향 버전 checkpoint Quantum Security Gateway, Quantum Security Management >= R82.10 with Jumbo Hotfix Take 36 or below, >= R82 with Jumbo Hotfix Take 118 or below, >= R81.20 with Jumbo Hotfix Take 158 or below, >= R81.10, R81, R80.30, R80.20, R80.10, R80, and R77.30
수정 버전 checkpoint Quantum Security Gateway, Quantum Security Management · 수정 버전은 공급사 공식자료 확인 필요
checkpoint Quantum Security Gateway, Quantum Security Management의 현재 전체 버전이 공식 영향 범위(checkpoint Quantum Security Gateway, Quantum Security Management >= R82.10 with Jumbo Hotfix Take 36 or below, >= R82 with Jumbo Hotfix Take 118 or below, >= R81.20 with Jumbo Hotfix Take 158 or below, >= R81.10, R81, R80.30, R80.20, R80.10, R80, and R77.30)에 포함되는지 확인합니다. OS를 선택하면 해당 OS의 제품·패키지·KB·APAR 확인 명령만 표시됩니다.
조치방안
공급사 공식 보안 권고에서 영향 버전, 수정 버전, 패치 번호와 공식 완화조치를 먼저 확인해야 합니다.
조치 후 확인사항
패치 후 같은 명령으로 전체 버전을 다시 확인해 checkpoint Quantum Security Gateway, Quantum Security Management · 수정 버전은 공급사 공식자료 확인 필요 기준을 충족하는지 확인합니다. 이어서 권한 상승 관련 오류·공격 흔적이 새로 발생하지 않는지 확인합니다.