CVE-2021-30358
high · 7.2Mobile Access Portal Native Applications who's path is defined by the administrator with environment variables may run applications from other locations by the Mobile Access Portal Agent.
7.2
CVSS
27.5%
EPSS (exploit prob.)
98th
EPSS percentile
2021-10-19
Published
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-78
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| checkpoint | mobile_access_portal_agent | r80.20 |
| checkpoint | mobile_access_portal_agent | r80.30 |
| checkpoint | mobile_access_portal_agent | r80.40 |
| checkpoint | mobile_access_portal_agent | r81 |
| checkpoint | mobile_access_portal_agent | r81.10 |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2021-30358