Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-24919 PoC — Information disclosure

Source
Associated Vulnerability
Title:Information disclosure (CVE-2024-24919)
Description:Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Software Blades. A Security fix that mitigates this vulnerability is available.
Description
Nmap script to check vulnerability CVE-2024-24919
Readme
# CVE-2024-24919
Nmap script to check vulnerability CVE-2024-24919

## Vulnerability References:

https://www.cvedetails.com/cve/CVE-2024-24919/

https://support.checkpoint.com/results/sk/sk182336
## Dorks
### Hunter
Hunter: /product.name="Check Point SSL Network Extender"

### Shodan
SHODAN: http.title:"Check Point SSL Network Extender"

### Fofa Query
FOFA: title="Check Point SSL Network Extender"

## Example

nmap -p443 --script cve-2024-24919.nse --script-args vulns.showall IP

![nmap_cve-2024-24919](https://github.com/GuayoyoCyber/CVE-2024-24919/assets/63943179/f8a3cd2c-77a7-400d-b257-adb19f3f0ef9)

## Disclaimer
### Aviso Legal:

El uso del siguiente exploit de vulnerabilidad se proporciona exclusivamente con fines educativos y de investigación. Al utilizar este exploit, usted acepta cumplir con todas las leyes y regulaciones aplicables. El autor y cualquier persona asociada con la creación o distribución de este exploit no se responsabilizan de ningún daño, pérdida o consecuencia resultante de su uso inapropiado o ilegal.

Este exploit debe ser utilizado de manera ética, con el propósito de mejorar la seguridad y aumentar el conocimiento sobre ciberseguridad. El abuso de este conocimiento para causar daño es inaceptable y está estrictamente prohibido.
File Snapshot

[4.0K] /data/pocs/7c8f41fc6eff03c78f18e8e3f314d9750549fcac ├── [3.9K] cve-2024-24919.nse ├── [ 11K] LICENSE └── [1.3K] README.md 0 directories, 3 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →