7.5
CVE-2026-62145
- EPSS 7.54%
- Veröffentlicht 22.07.2026 13:53:53
- Zuletzt bearbeitet 24.07.2026 05:16:45
- CVE-Watchlists
- Unerledigt
Local Privilege Escalation in Gaia Portal
A vulnerability in Check Point Gaia Portal allows an authenticated attacker with read-only Gaia Portal privileges to execute commands with root privileges.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
Herstellercheckpoint
≫
Produkt
Quantum Security Gateway
Version
R82.10 with Jumbo Hotfix Take 36 or below
Status
affected
Version
R82 with Jumbo Hotfix Take 118 or below
Status
affected
Version
R81.20 with Jumbo Hotfix Take 158 or below
Status
affected
Version
R81.10, R81, R80.30, R80.20, R80.10, R80, and R77.30
Status
affected
Herstellercheckpoint
≫
Produkt
Quantum Security Management
Version
R82.10 with Jumbo Hotfix Take 36 or below
Status
affected
Version
R82 with Jumbo Hotfix Take 118 or below
Status
affected
Version
R81.20 with Jumbo Hotfix Take 158 or below
Status
affected
Version
R81.10, R81, R80.30, R80.20, R80.10, R80, and R77.30
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 7.54% | 0.939 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| Checkpoint | 7.5 | 1.6 | 5.9 |
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-269 Improper Privilege Management
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
Für Zugriff zu Vulnerability Intelligence ist ein VulnDex Zugang erforderlich.
Für Zugriff zu Vulnerability Intelligence ist ein VulnDex Zugang erforderlich.
https://support.checkpoint.com/results/sk/sk185153