CVE-2021-30358

HIGH

Mobile Access Portal Native Apps - Path Traversal

Title source: llm
STIX 2.1

Description

Mobile Access Portal Native Applications who's path is defined by the administrator with environment variables may run applications from other locations by the Mobile Access Portal Agent.

References (2)

Core 2
Core References
Patch, Vendor Advisory x_refsource_misc
https://supportcontent.checkpoint.com/solutions?id=sk175806

Scores

CVSS v3 7.2
EPSS 0.2747
EPSS Percentile 97.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-78
Status published
Products (5)
checkpoint/mobile_access_portal_agent r80.20
checkpoint/mobile_access_portal_agent r80.30
checkpoint/mobile_access_portal_agent r80.40
checkpoint/mobile_access_portal_agent r81
checkpoint/mobile_access_portal_agent r81.10
Published Oct 19, 2021
Tracked Since Feb 18, 2026