Back to Database
Status published
Medium
CVE-2024-52888
Stored-XSS
Vulnerability Description
For an authenticated end-user the portal may run a script while attempting to display a directory or some file's properties.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-52888
Credits & Attribution
No credits recorded in the NVD database.
More from checkpoint
View All →CVE-2025-9142
Local privilege escalation in Harmony SASE Windows Agent
High
7.5
CVE-2025-8305
Information Disclosure in Identity Agent Debug Files
Medium
6.5
CVE-2025-8304
Information Disclosure in Identity Agent Registry Keys
Medium
6.5
CVE-2025-3831
Exposed SFTP server
High
8.1
CVE-2025-2028
Lack of TLS validation
Medium
6.5
Affected Vendor
checkpoint
View all reports →Affected Software
Check Point Mobile Access
Vulnerable Versions:
Check Point Mobile Access versions R81.10, R81.20, R82
Timeline
Official Publish:
April 27th, 2025
Last Modified:
April 28th, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N