CVE-2024-24914: Check Point Gaia OS

High severity, CVSS 8.0. EPSS: 0.4% chance of exploitation in the next 30 days.

Authenticated Gaia users can inject code or commands by global variables through special HTTP requests. A Security fix that mitigates this vulnerability is available.

Affected products

  • Check Point Gaia OS: version r81 only; version r81.10 only; version r81.20 only

Published 2024-11-07. Last modified 2026-06-17.