« Volver al listado

CVE-2023-28130

Estado: ModificadaAlta (7.2)—

Local user may lead to privilege escalation using Gaia Portal hostnames page.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2023-28130",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2023-28130",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "poc"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "total"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2024-08-23T03:55:42.786958Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 7.2,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "HIGH",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 1.2
      },
      {
        "type": "Secondary",
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 7.2,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "HIGH",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 1.2
      }
    ]
  },
  "affected": [
    {
      "source": "cve@checkpoint.com",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "Quantum Appliances, Quantum Security Gateways",
          "versions": [
            {
              "status": "affected",
              "version": "R81.20 before take 14, R81.10 before take 95, R81 before take 82 R80.40 before take 198"
            }
          ]
        }
      ]
    },
    {
      "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
      "affectedData": [
        {
          "cpes": [
            "cpe:2.3:a:checkpoint:gaia_portal:*:*:*:*:*:*:*:*"
          ],
          "vendor": "checkpoint",
          "product": "gaia_portal",
          "versions": [
            {
              "status": "affected",
              "version": "0",
              "lessThan": "take14",
              "versionType": "custom"
            },
            {
              "status": "affected",
              "version": "r81.10",
              "lessThan": "take82",
              "versionType": "custom"
            },
            {
              "status": "affected",
              "version": "r80.40",
              "lessThan": "take198",
              "versionType": "custom"
            }
          ],
          "defaultStatus": "unknown"
        }
      ]
    }
  ],
  "published": "2023-07-26T11:15:09.550",
  "references": [
    {
      "url": "http://packetstormsecurity.com/files/173918/Checkpoint-Gaia-Portal-R81.10-Remote-Command-Execution.html",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "cve@checkpoint.com"
    },
    {
      "url": "http://seclists.org/fulldisclosure/2023/Aug/4",
      "tags": [
        "Mailing List",
        "Third Party Advisory"
      ],
      "source": "cve@checkpoint.com"
    },
    {
      "url": "http://seclists.org/fulldisclosure/2023/Jul/43",
      "tags": [
        "Not Applicable"
      ],
      "source": "cve@checkpoint.com"
    },
    {
      "url": "https://pentests.nl/pentest-blog/cve-2023-28130-command-injection-in-check-point-gaia-portal/",
      "tags": [
        "Exploit",
        "Third Party Advisory"
      ],
      "source": "cve@checkpoint.com"
    },
    {
      "url": "https://support.checkpoint.com/results/sk/sk181311",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@checkpoint.com"
    },
    {
      "url": "http://packetstormsecurity.com/files/173918/Checkpoint-Gaia-Portal-R81.10-Remote-Command-Execution.html",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://seclists.org/fulldisclosure/2023/Aug/4",
      "tags": [
        "Mailing List",
        "Third Party Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://seclists.org/fulldisclosure/2023/Jul/43",
      "tags": [
        "Not Applicable"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://pentests.nl/pentest-blog/cve-2023-28130-command-injection-in-check-point-gaia-portal/",
      "tags": [
        "Exploit",
        "Third Party Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://support.checkpoint.com/results/sk/sk181311",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "cve@checkpoint.com",
      "description": [
        {
          "lang": "en",
          "value": "CWE-20"
        }
      ]
    },
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-77"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Local user may lead to privilege escalation using Gaia Portal hostnames page."
    }
  ],
  "lastModified": "2026-06-17T05:46:56.587",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:checkpoint:gaia_portal:r80.40:-:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "1687CFDC-EB35-4929-BB2D-87DBE9045A0B"
            },
            {
              "criteria": "cpe:2.3:a:checkpoint:gaia_portal:r81:-:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6B88D624-8BB6-4E1A-861E-97DAD116156D"
            },
            {
              "criteria": "cpe:2.3:a:checkpoint:gaia_portal:r81.10:-:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "1DC24950-C92B-450D-BB27-9A254B820E87"
            },
            {
              "criteria": "cpe:2.3:a:checkpoint:gaia_portal:r81.20:-:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "F06AD4B7-71C0-4B8C-B55C-79F8F06338AB"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@checkpoint.com"
}